Описание
Google Chrome before 11.0.696.57 does not properly implement the tabs permission for extensions, which allows remote attackers to read local files via a crafted extension.
Ссылки
- ExploitIssue TrackingPatchVendor Advisory
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- ExploitIssue TrackingPatchVendor Advisory
- Vendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 11.0.696.57 (исключая)
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00922
Низкий
5 Medium
CVSS2
Дефекты
CWE-276
Связанные уязвимости
ubuntu
больше 14 лет назад
Google Chrome before 11.0.696.57 does not properly implement the tabs permission for extensions, which allows remote attackers to read local files via a crafted extension.
debian
больше 14 лет назад
Google Chrome before 11.0.696.57 does not properly implement the tabs ...
github
больше 3 лет назад
Google Chrome before 11.0.696.57 does not properly implement the tabs permission for extensions, which allows remote attackers to read local files via a crafted extension.
EPSS
Процентиль: 75%
0.00922
Низкий
5 Medium
CVSS2
Дефекты
CWE-276