Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-6051

Опубликовано: 24 янв. 2018
Источник: redhat
CVSS3: 4.3

Описание

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=1538523chromium-browser: referrer leak in xss auditor

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 7 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

CVSS3: 4.3
nvd
больше 7 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

CVSS3: 4.3
debian
больше 7 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure th ...

CVSS3: 4.3
github
больше 3 лет назад

XSS Auditor in Google Chrome prior to 64.0.3282.119, did not ensure the reporting URL was in the same origin as the page it was on, which allowed a remote attacker to obtain referrer details via a crafted HTML page.

suse-cvrf
около 8 лет назад

Security update for chromium

4.3 Medium

CVSS3