Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-5042

Опубликовано: 09 мар. 2017
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1431043chromium-browser: incorrect handling of cookies in cast

EPSS

Процентиль: 13%
0.00044
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.7
ubuntu
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

CVSS3: 5.7
nvd
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

CVSS3: 5.7
debian
почти 9 лет назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linu ...

CVSS3: 5.7
github
почти 4 года назад

Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to sites discovered via SSDP, which allowed an attacker on the local network segment to initiate connections to arbitrary URLs and observe any plaintext cookies sent.

EPSS

Процентиль: 13%
0.00044
Низкий

6.5 Medium

CVSS3