cbcvebase.
CVE-2011-1185
published 2011-03-11

CVE-2011-1185: Google Chrome before 10.0.648.127 does not prevent (1) navigation and (2) close operations on the top location of a sandboxed frame, which has unspecified…

PriorityP426high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.42%
70.2th percentile
Google Chrome before 10.0.648.127 does not prevent (1) navigation and (2) close operations on the top location of a sandboxed frame, which has unspecified impact and remote attack vectors.

Affected

3 ranges
VendorProductVersion rangeFixed in
googlechrome< 10.0.648.12710.0.648.127
webkitgtkwebkitgtk>= 0 < 2.4.8-1ubuntu1~ubuntu14.04.12.4.8-1ubuntu1~ubuntu14.04.1
webkitgtkwebkitgtk>= 0 < 2.4.9-2ubuntu22.4.9-2ubuntu2

CVSS provenance

nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.