CVE-2011-1435

Google Chrome <11.0.696.57 - Info Disclosure

Title source: llm
STIX 2.1

Description

Google Chrome before 11.0.696.57 does not properly implement the tabs permission for extensions, which allows remote attackers to read local files via a crafted extension.

References (4)

Core 4
Core References
Exploit, Issue Tracking, Patch, Vendor Advisory x_refsource_confirm
http://code.google.com/p/chromium/issues/detail?id=72523
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/67142

Scores

EPSS 0.0110
EPSS Percentile 61.4%

Details

CWE
CWE-276
Status published
Products (1)
google/chrome < 11.0.696.57
Published May 03, 2011
Tracked Since Feb 18, 2026