Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2012-5117

Опубликовано: 07 нояб. 2012
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Google Chrome before 23.0.1271.64 does not properly restrict the loading of an SVG subresource in the context of an IMG element, which has unspecified impact and remote attack vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
Версия до 23.0.1271.62 (включая)
cpe:2.3:a:google:chrome:23.0.1271.0:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.1:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.2:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.3:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.4:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.5:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.6:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.7:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.8:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.9:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.10:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.11:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.12:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.13:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.14:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.15:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.16:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.17:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.18:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.19:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.20:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.21:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.22:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.23:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.24:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.26:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.30:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.31:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.32:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.33:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.35:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.36:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.37:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.38:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.39:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.40:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.41:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.44:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.45:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.46:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.49:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.50:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.51:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.52:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.53:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.54:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.55:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.56:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.57:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.58:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.59:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.60:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:23.0.1271.61:*:*:*:*:*:*:*

EPSS

Процентиль: 45%
0.00228
Низкий

7.5 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 13 лет назад

Google Chrome before 23.0.1271.64 does not properly restrict the loading of an SVG subresource in the context of an IMG element, which has unspecified impact and remote attack vectors.

debian
больше 13 лет назад

Google Chrome before 23.0.1271.64 does not properly restrict the loadi ...

github
больше 3 лет назад

Google Chrome before 23.0.1271.64 does not properly restrict the loading of an SVG subresource in the context of an IMG element, which has unspecified impact and remote attack vectors.

EPSS

Процентиль: 45%
0.00228
Низкий

7.5 High

CVSS2

Дефекты

CWE-264