Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-1261

Опубликовано: 20 мая 2015
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL's fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:google:chrome:*:*:*:*:*:android:*:*
Версия до 42.0.2311.107 (включая)

EPSS

Процентиль: 77%
0.01064
Низкий

5 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 10 лет назад

android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL's fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text.

redhat
больше 10 лет назад

android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL's fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text.

debian
больше 10 лет назад

android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java ...

github
больше 3 лет назад

android/java/src/org/chromium/chrome/browser/WebsiteSettingsPopup.java in Google Chrome before 43.0.2357.65 on Android does not properly restrict use of a URL's fragment identifier during construction of a page-info popup, which allows remote attackers to spoof the URL bar or deliver misleading popup content via crafted text.

fstec
больше 10 лет назад

Уязвимость браузера Google Chrome, позволяющая нарушителю подменить данные

EPSS

Процентиль: 77%
0.01064
Низкий

5 Medium

CVSS2

Дефекты

CWE-20