CVE-2011-3072

Google Chrome < 18.0.1025.151 - Same Origin Policy Bypass via Pop-Up Windows

Title source: llm
STIX 2.1

Description

Google Chrome before 18.0.1025.151 allows remote attackers to bypass the Same Origin Policy via vectors related to pop-up windows.

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1026892
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/52913
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/48749
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/48732
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201204-03.xml
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/74632
Broken Link vdb-entry x_refsource_osvdb
http://osvdb.org/81042
Exploit, Vendor Advisory x_refsource_confirm
http://code.google.com/p/chromium/issues/detail?id=118467

Scores

EPSS 0.0118
EPSS Percentile 63.6%

Details

CWE
CWE-346
Status published
Products (1)
google/chrome < 18.0.1025.151
Published Apr 05, 2012
Tracked Since Feb 18, 2026