CVE-2018-6049 — Google Chrome vulnerability
6 documents6 sources
Severity
6.5MEDIUMNVD
EPSS
0.7%
top 28.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 25
Latest updateMay 13
Description
Incorrect security UI in permissions prompt in Google Chrome prior to 64.0.3282.119 allowed a remote attacker to spoof the origin to which permission is granted via a crafted HTML page.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:NExploitability: 2.8 | Impact: 3.6
Affected Packages5 packages
Also affects: Debian Linux 8.0, 9.0
🔴Vulnerability Details
3GHSA▶
GHSA-wwr6-9vvc-wqq5: Incorrect security UI in permissions prompt in Google Chrome prior to 64↗2022-05-13
OSV
▶
CVEList
▶