Google Chrome before 12.0.742.91 allows remote attackers to perform unspecified injection into a chrome:// page via vectors related to extensions.
References
Link | Resource |
---|---|
http://code.google.com/p/chromium/issues/detail?id=83010 | Exploit Patch Vendor Advisory |
http://googlechromereleases.blogspot.com/2011/06/chrome-stable-release.html | Vendor Advisory |
http://secunia.com/advisories/44829 | Third Party Advisory |
http://osvdb.org/72789 | Broken Link |
http://www.securityfocus.com/bid/48129 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/67902 | Third Party Advisory VDB Entry |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14616 | Third Party Advisory |
Configurations
Information
Published : 2011-06-09 12:55
Updated : 2020-05-22 09:44
NVD link : CVE-2011-1819
Mitre link : CVE-2011-1819
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
- chrome