Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
BID:57474
Info
Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
| Bugtraq ID: | 57474 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 21 2013 12:00AM |
| Updated: | Jan 21 2013 12:00AM |
| Credit: | WHK Yan |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
Google Chrome is prone to a security-bypass vulnerability.
An attacker can exploit this vulnerability to bypass the cross-site scripting filter. Successful exploits may allow attackers to execute arbitrary script code and steal cookie-based authentication credentials.
Google Chrome is prone to a security-bypass vulnerability.
An attacker can exploit this vulnerability to bypass the cross-site scripting filter. Successful exploits may allow attackers to execute arbitrary script code and steal cookie-based authentication credentials.
Exploit / POC
Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
Attackers can exploit this issue by enticing an unsuspecting user to follow a malicious URI.
Attackers can exploit this issue by enticing an unsuspecting user to follow a malicious URI.
Solution / Fix
Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
Solution:
Currently, we are not aware of any vendor supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor supplied patches. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Google Chrome Cross Site Scripting Filter Security Bypass Vulnerability
References:
References:
- Google Chrome Homepage (Google)