CVE-2012-2815Sensitive Information Exposure in Google Chrome

Severity
5.0MEDIUMNVD
EPSS
0.6%
top 31.62%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 27
Latest updateMay 17

Description

Google Chrome before 20.0.1132.43 allows remote attackers to obtain potentially sensitive information from a fragment identifier by leveraging access to an IFRAME element associated with a different domain.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDgoogle/chrome20.0.1132.42+42

🔴Vulnerability Details

1
GHSA
GHSA-639f-4xpq-8887: Google Chrome before 202022-05-17
CVE-2012-2815 — Sensitive Information Exposure | cvebase