Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-6251

Опубликовано: 14 янв. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8
CVSS3: 8.1

Описание

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 issue in Microsoft Edge.

РелизСтатусПримечание
bionic

released

2.24.1-0ubuntu0.18.04.1
cosmic

released

2.24.1-0ubuntu0.18.10.2
devel

not-affected

2.24.1-1
disco

not-affected

2.24.1-1
eoan

not-affected

2.24.1-1
esm-infra-legacy/trusty

DNE

esm-infra/bionic

not-affected

2.24.1-0ubuntu0.18.04.1
esm-infra/focal

not-affected

2.24.1-1
esm-infra/xenial

ignored

focal

not-affected

2.24.1-1

Показывать по

EPSS

Процентиль: 84%
0.02368
Низкий

5.8 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 4.3
redhat
почти 7 лет назад

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 issue in Microsoft Edge.

CVSS3: 8.1
nvd
больше 6 лет назад

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 issue in Microsoft Edge.

CVSS3: 8.1
debian
больше 6 лет назад

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to add ...

CVSS3: 8.1
github
около 3 лет назад

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 issue in Microsoft Edge.

CVSS3: 8.1
fstec
больше 6 лет назад

Уязвимость модулей отображения веб-страниц WebKitGTK и WPE WebKit, связанная с недостаточной проверкой входных данных, позволяющая нарушителю проводить спуфинг-атаки

EPSS

Процентиль: 84%
0.02368
Низкий

5.8 Medium

CVSS2

8.1 High

CVSS3