Back to search
CVE-2011-3887
Published: Oct 25, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
Google Chrome before 15.0.874.102 does not properly handle javascript: URLs, which allows remote attackers to bypass intended access restrictions and read cookies via unspecified vectors.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
google-chrome-uri-sec-bypass(70965)
vdb-entry
x_refsource_XF
1026774
vdb-entry
x_refsource_SECTRACK
48377
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:13179
vdb-entry
signature
x_refsource_OVAL
http://code.google.com/p/chromium/issues/detail?id=98407
x_refsource_CONFIRM
APPLE-SA-2012-03-12-1
vendor-advisory
x_refsource_APPLE
http://googlechromereleases.blogspot.com/2011/10/chrome-stable-release.html
x_refsource_CONFIRM
48288
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2012-03-07-2
vendor-advisory
x_refsource_APPLE
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now