CVE-2017-18256
MEDIUMBrave Browser < 0.13.0 - Denial of Service via Long JavaScript Alert Argument
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-18256. PoCs published by Sahil Tikoo.
AI-analyzed exploit summary This exploit demonstrates a Denial of Service (DoS) vulnerability in Brave Browser versions prior to 0.13.0 by consuming excessive resources via an overly long argument passed to the JavaScript alert() function.
Description
Brave Browser before 0.13.0 allows remote attackers to cause a denial of service (resource consumption) via a long alert() argument in JavaScript code, because window dialogs are mishandled.
Exploits (1)
This exploit demonstrates a Denial of Service (DoS) vulnerability in Brave Browser versions prior to 0.13.0 by consuming excessive resources via an overly long argument passed to the JavaScript alert() function.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H