Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-1652

Опубликовано: 13 апр. 2016
Источник: redhat
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions subsystem in Google Chrome before 50.0.2661.75 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1327109chromium-browser: universal XSS in extension bindings

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 10 лет назад

Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions subsystem in Google Chrome before 50.0.2661.75 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."

CVSS3: 6.1
nvd
почти 10 лет назад

Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions subsystem in Google Chrome before 50.0.2661.75 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."

CVSS3: 6.1
debian
почти 10 лет назад

Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireF ...

CVSS3: 6.1
github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the ModuleSystem::RequireForJsInner function in extensions/renderer/module_system.cc in the Extensions subsystem in Google Chrome before 50.0.2661.75 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."

fstec
почти 10 лет назад

Уязвимость браузера Google Chrome, позволяющая нарушителю внедрить произвольный Веб- или HTML-код

4.3 Medium

CVSS2