Количество 8
Количество 8
CVE-2015-6790
The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string.
CVE-2015-6790
The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string.
CVE-2015-6790
The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string.
CVE-2015-6790
The WebPageSerializerImpl::openTagToString function in WebKit/Source/w ...
GHSA-j459-hg6r-rr22
The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string.
BDU:2016-00967
Уязвимость браузера Google Chrome, позволяющая нарушителю внедрить произвольный Веб- или HTML-код
openSUSE-SU-2015:2291-1
Security update for Chromium
openSUSE-SU-2015:2290-1
Security update for Chromium
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2015-6790 The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string. | CVSS2: 4.3 | 1% Низкий | около 10 лет назад | |
CVE-2015-6790 The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string. | CVSS2: 4.3 | 1% Низкий | около 10 лет назад | |
CVE-2015-6790 The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string. | CVSS2: 4.3 | 1% Низкий | около 10 лет назад | |
CVE-2015-6790 The WebPageSerializerImpl::openTagToString function in WebKit/Source/w ... | CVSS2: 4.3 | 1% Низкий | около 10 лет назад | |
GHSA-j459-hg6r-rr22 The WebPageSerializerImpl::openTagToString function in WebKit/Source/web/WebPageSerializerImpl.cpp in the page serializer in Google Chrome before 47.0.2526.80 does not properly use HTML entities, which might allow remote attackers to inject arbitrary web script or HTML via a crafted document, as demonstrated by a double-quote character inside a single-quoted string. | 1% Низкий | больше 3 лет назад | ||
BDU:2016-00967 Уязвимость браузера Google Chrome, позволяющая нарушителю внедрить произвольный Веб- или HTML-код | CVSS2: 4.3 | 1% Низкий | около 10 лет назад | |
openSUSE-SU-2015:2291-1 Security update for Chromium | около 10 лет назад | |||
openSUSE-SU-2015:2290-1 Security update for Chromium | около 10 лет назад |
Уязвимостей на страницу