Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-2358

Опубликовано: 03 авг. 2011
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Google Chrome before 13.0.782.107 does not ensure that extension installations are confirmed by a browser dialog, which makes it easier for remote attackers to modify the product's functionality via a Trojan horse extension.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
Версия до 13.0.782.107 (исключая)

EPSS

Процентиль: 72%
0.00708
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 14 лет назад

Google Chrome before 13.0.782.107 does not ensure that extension installations are confirmed by a browser dialog, which makes it easier for remote attackers to modify the product's functionality via a Trojan horse extension.

debian
больше 14 лет назад

Google Chrome before 13.0.782.107 does not ensure that extension insta ...

github
больше 3 лет назад

Google Chrome before 13.0.782.107 does not ensure that extension installations are confirmed by a browser dialog, which makes it easier for remote attackers to modify the product's functionality via a Trojan horse extension.

EPSS

Процентиль: 72%
0.00708
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-20