6.5
CVE-2016-8508
- EPSS 1.6%
- Veröffentlicht 01.03.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Quelle browser-security@yandex-team.r
- CVE-Watchlists
- Unerledigt
Yandex Browser for desktop before 17.1.1.227 does not show Protect (similar to Safebrowsing in Chromium) warnings in web-sites with special content-type, which could be used by remote attacker for prevention Protect warning on own malicious web-site.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Yandex ≫ Yandex Browser Version < 17.1.1.227
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.6% | 0.726 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://www.securityfocus.com/bid/96514
https://yandex.com/blog/security-changelogs/fixed-in-version-17-1