URL spoofing vulnerability in Google Chrome via a crafted document - CVE-2015-1278 (dpkg)ID: oval:org.secpod.oval:def:25554 | Date: (C)2015-07-31 (M)2022-07-06 |
Class: VULNERABILITY | Family: unix |
The host is installed with Google Chrome before 44.0.2403.89 and is prone to an URL spoofing vulnerability. A flaw is present in the application, which fails to ensure that a PDF document's modal dialog is closed upon navigation to an interstitial page. Successful exploitation could allow remote attackers to spoof URLs.