Логотип exploitDog
bind:CVE-2015-1300
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-1300

Количество 6

Количество 6

ubuntu логотип

CVE-2015-1300

больше 10 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2015-1300

больше 10 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2015-1300

больше 10 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2015-1300

больше 10 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-3xvg-65vh-g47p

больше 3 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

EPSS: Низкий
fstec логотип

BDU:2015-11284

больше 10 лет назад

Уязвимость браузера Google Chrome, позволяющая нарушителю получить доступ к защищаемой информации

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-1300

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 5
1%
Низкий
больше 10 лет назад
redhat логотип
CVE-2015-1300

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 6.4
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2015-1300

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

CVSS2: 5
1%
Низкий
больше 10 лет назад
debian логотип
CVE-2015-1300

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in ...

CVSS2: 5
1%
Низкий
больше 10 лет назад
github логотип
GHSA-3xvg-65vh-g47p

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2015-11284

Уязвимость браузера Google Chrome, позволяющая нарушителю получить доступ к защищаемой информации

CVSS2: 5
1%
Низкий
больше 10 лет назад

Уязвимостей на страницу