Логотип exploitDog
bind:CVE-2018-1000815
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1000815

Количество 3

Количество 3

nvd логотип

CVE-2018-1000815

около 7 лет назад

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making attackers easier to track users. This attack appear to be exploitable via the victim must visit a specially crafted website. This vulnerability appears to have been fixed in 0.25.2.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2018-1000815

около 7 лет назад

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-56pr-74v5-7m5w

больше 3 лет назад

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making attackers easier to track users. This attack appear to be exploitable via the victim must visit a specially crafted website. This vulnerability appears to have been fixed in 0.25.2.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-1000815

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making attackers easier to track users. This attack appear to be exploitable via the victim must visit a specially crafted website. This vulnerability appears to have been fixed in 0.25.2.

CVSS3: 4.3
0%
Низкий
около 7 лет назад
debian логотип
CVE-2018-1000815

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains ...

CVSS3: 4.3
0%
Низкий
около 7 лет назад
github логотип
GHSA-56pr-74v5-7m5w

Brave Software Inc. Brave version version 0.22.810 to 0.24.0 contains a Other/Unknown vulnerability in function ContentSettingsObserver::AllowScript() in content_settings_observer.cc that can result in Websites can run inline JavaScript even if script is blocked, making attackers easier to track users. This attack appear to be exploitable via the victim must visit a specially crafted website. This vulnerability appears to have been fixed in 0.25.2.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу