[Forgot Password]
Login  Register Subscribe

23631

 
 

115083

 
 

97147

 
 

909

 
 

78730

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2017-5110

Date: (C)2017-10-30   (M)2017-11-10
 
CVSS Score: 4.3Access Vector:
Exploitability Subscore: Access Complexity:
Impact Subscore: Authentication:
 Confidentiality:
 Integrity:
 Availability:











Inappropriate implementation of the web payments API on blob: and data: schemes in Web Payments in Google Chrome prior to 60.0.3112.78 for Mac, Windows, Linux, and Android allowed a remote attacker to spoof the contents of the Omnibox via a crafted HTML page.

Reference:
BID-99950
DSA-3926
GLSA-201709-15
https://chromereleases.googleblog.com/2017/07/stable-channel-update-for-desktop.html
https://crbug.com/717476

OVAL    11
oval:org.secpod.oval:def:41543
oval:org.secpod.oval:def:41587
oval:org.secpod.oval:def:41522
oval:org.secpod.oval:def:41588
...

© 2013 SecPod Technologies