Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-5045

Опубликовано: 09 мар. 2017
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed detection of a blocked iframe load, which allowed a remote attacker to brute force JavaScript variables via a crafted HTML page.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1431047chromium-browser: information disclosure in xss auditor

EPSS

Процентиль: 75%
0.00854
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.1
ubuntu
почти 9 лет назад

XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed detection of a blocked iframe load, which allowed a remote attacker to brute force JavaScript variables via a crafted HTML page.

CVSS3: 6.1
nvd
почти 9 лет назад

XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed detection of a blocked iframe load, which allowed a remote attacker to brute force JavaScript variables via a crafted HTML page.

CVSS3: 6.1
debian
почти 9 лет назад

XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, a ...

CVSS3: 6.1
github
почти 4 года назад

XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed detection of a blocked iframe load, which allowed a remote attacker to brute force JavaScript variables via a crafted HTML page.

EPSS

Процентиль: 75%
0.00854
Низкий

6.5 Medium

CVSS3