Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-18358

Опубликовано: 04 дек. 2018
Источник: redhat
CVSS3: 6.5

Описание

Lack of special casing of localhost in WPAD files in Google Chrome prior to 71.0.3578.80 allowed an attacker on the local network segment to proxy resources on localhost via a crafted WPAD file.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1656572chromium-browser: Insufficient policy enforcement in Proxy

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.7
ubuntu
около 7 лет назад

Lack of special casing of localhost in WPAD files in Google Chrome prior to 71.0.3578.80 allowed an attacker on the local network segment to proxy resources on localhost via a crafted WPAD file.

CVSS3: 5.7
nvd
около 7 лет назад

Lack of special casing of localhost in WPAD files in Google Chrome prior to 71.0.3578.80 allowed an attacker on the local network segment to proxy resources on localhost via a crafted WPAD file.

CVSS3: 5.7
debian
около 7 лет назад

Lack of special casing of localhost in WPAD files in Google Chrome pri ...

CVSS3: 5.7
github
больше 3 лет назад

Lack of special casing of localhost in WPAD files in Google Chrome prior to 71.0.3578.80 allowed an attacker on the local network segment to proxy resources on localhost via a crafted WPAD file.

CVSS3: 5.7
fstec
около 7 лет назад

Уязвимость веб-браузера Google Chrome, связанная с некорректной проверкой ввода, позволяющая нарушителю перенаправлять ресурсы на localhost

6.5 Medium

CVSS3