Описание
Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements, which allows remote attackers to bypass the pop-up blocker via unknown vectors.
Ссылки
- Issue TrackingPatchVendor Advisory
- Vendor Advisory
- Third Party Advisory
- Issue TrackingPatchVendor Advisory
- Vendor Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6.0.472.53 (исключая)
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00123
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-noinfo
Связанные уязвимости
ubuntu
больше 15 лет назад
Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements, which allows remote attackers to bypass the pop-up blocker via unknown vectors.
debian
больше 15 лет назад
Google Chrome before 6.0.472.53 does not properly handle the _blank va ...
github
больше 3 лет назад
Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements, which allows remote attackers to bypass the pop-up blocker via unknown vectors.
EPSS
Процентиль: 32%
0.00123
Низкий
4.3 Medium
CVSS2
Дефекты
NVD-CWE-noinfo