Описание
Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Ссылки
- Release Notes
- ExploitIssue Tracking
- Mailing List
- Mailing List
- Mailing List
- Mailing List
- Mailing List
- Mailing List
- Release Notes
- ExploitIssue Tracking
- Mailing List
- Mailing List
- Mailing List
- Mailing List
- Mailing List
- Mailing List
Уязвимые конфигурации
Одно из
EPSS
4.3 Medium
CVSS3
4.6 Medium
CVSS3
Дефекты
Связанные уязвимости
Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Chromium: CVE-2024-3843 Insufficient data validation in Downloads
Insufficient data validation in Downloads in Google Chrome prior to 12 ...
Insufficient data validation in Downloads in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)
Уязвимость раздела «Загрузки» браузеров Microsoft Edge и Google Chrome, позволяющая нарушителю получить доступ к конфиденциальной информации
EPSS
4.3 Medium
CVSS3
4.6 Medium
CVSS3