Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-3055

Опубликовано: 22 мар. 2012
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
Версия до 17.0.963.83 (исключая)
Конфигурация 2
cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01044
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-306

Связанные уязвимости

ubuntu
почти 14 лет назад

The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.

debian
почти 14 лет назад

The browser native UI in Google Chrome before 17.0.963.83 does not req ...

github
больше 3 лет назад

The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.

EPSS

Процентиль: 77%
0.01044
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-306