Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-0556

Опубликовано: 18 фев. 2010
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 populates an authentication dialog with credentials that were stored by Password Manager for a different web site, which allows user-assisted remote HTTP servers to obtain sensitive information via a URL that requires authentication, as demonstrated by a URL in the SRC attribute of an IMG element.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

5.0.375.38~r46659-0ubuntu1
hardy

DNE

intrepid

DNE

jaunty

DNE

karmic

DNE

lucid

not-affected

5.0.342.9~r43360-0ubuntu2
upstream

needs-triage

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

nvd
почти 16 лет назад

browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 populates an authentication dialog with credentials that were stored by Password Manager for a different web site, which allows user-assisted remote HTTP servers to obtain sensitive information via a URL that requires authentication, as demonstrated by a URL in the SRC attribute of an IMG element.

debian
почти 16 лет назад

browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 popul ...

github
больше 3 лет назад

browser/login/login_prompt.cc in Google Chrome before 4.0.249.89 populates an authentication dialog with credentials that were stored by Password Manager for a different web site, which allows user-assisted remote HTTP servers to obtain sensitive information via a URL that requires authentication, as demonstrated by a URL in the SRC attribute of an IMG element.

4.3 Medium

CVSS2