Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-1241

Опубликовано: 14 апр. 2015
Источник: redhat
CVSS2: 6.4
EPSS Низкий

Описание

Google Chrome before 42.0.2311.90 does not properly consider the interaction of page navigation with the handling of touch events and gesture events, which allows remote attackers to trigger unintended UI actions via a crafted web site that conducts a "tapjacking" attack.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-352
https://bugzilla.redhat.com/show_bug.cgi?id=1211924chromium-browser: tap-jacking vulnerability

EPSS

Процентиль: 86%
0.02832
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 11 лет назад

Google Chrome before 42.0.2311.90 does not properly consider the interaction of page navigation with the handling of touch events and gesture events, which allows remote attackers to trigger unintended UI actions via a crafted web site that conducts a "tapjacking" attack.

nvd
почти 11 лет назад

Google Chrome before 42.0.2311.90 does not properly consider the interaction of page navigation with the handling of touch events and gesture events, which allows remote attackers to trigger unintended UI actions via a crafted web site that conducts a "tapjacking" attack.

debian
почти 11 лет назад

Google Chrome before 42.0.2311.90 does not properly consider the inter ...

github
больше 3 лет назад

Google Chrome before 42.0.2311.90 does not properly consider the interaction of page navigation with the handling of touch events and gesture events, which allows remote attackers to trigger unintended UI actions via a crafted web site that conducts a "tapjacking" attack.

fstec
почти 11 лет назад

Уязвимость браузера Google Chrome, позволяющая удаленному нарушителю выполнить действия, непредусмотренные интерфейсом браузера

EPSS

Процентиль: 86%
0.02832
Низкий

6.4 Medium

CVSS2