Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-5085

Опубликовано: 27 окт. 2017
Источник: nvd
CVSS3: 6.1
CVSS2: 4.3
EPSS Низкий

Описание

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:google:chrome:58.0.3029:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00443
Низкий

6.1 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 8 лет назад

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

CVSS3: 4.2
redhat
больше 8 лет назад

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

CVSS3: 6.1
debian
больше 8 лет назад

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 ...

CVSS3: 6.1
github
больше 3 лет назад

Inappropriate implementation in Bookmarks in Google Chrome prior to 59 for iOS allowed a remote attacker who convinced the user to perform certain operations to run JavaScript on chrome:// pages via a crafted bookmark.

CVSS3: 6.1
fstec
больше 8 лет назад

Уязвимость компонента Bookmarks браузера Google Chrome, позволяющая нарушителю выполнить сценарий JavaScript на страницах chrome://

EPSS

Процентиль: 63%
0.00443
Низкий

6.1 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-79