CVE-2009-0374
- EPSS 4.25%
- Veröffentlicht 30.01.2009 21:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Google Chrome 1.0.154.43 allows remote attackers to trick a user into visiting an arbitrary URL via an onclick action that moves a crafted element to the current mouse position, related to a "Clickjacking" vulnerability. NOTE: a third party disputes...
CVE-2008-5915
- EPSS 0.58%
- Veröffentlicht 20.01.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
An unspecified function in the JavaScript implementation in Google Chrome creates and exposes a "temporary footprint" when there is a current login to a web site, which makes it easier for remote attackers to trick a user into acting upon a spoofed p...
CVE-2008-5749
- EPSS 4.28%
- Veröffentlicht 29.12.2008 15:24:23
- Zuletzt bearbeitet 09.04.2025 00:30:58
Argument injection vulnerability in Google Chrome 1.0.154.36 on Windows XP SP3 allows remote attackers to execute arbitrary commands via the --renderer-path option in a chromehtml: URI. NOTE: a third party disputes this issue, stating that Chrome "w...
CVE-2008-4724
- EPSS 0.15%
- Veröffentlicht 23.10.2008 22:00:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple cross-site scripting (XSS) vulnerabilities in Google Chrome 0.2.149.30 allow remote attackers to inject arbitrary web script or HTML via an ftp:// URL for an HTML document within a (1) JPG, (2) PDF, or (3) TXT file. NOTE: the provenance of ...
CVE-2008-4340
- EPSS 7.92%
- Veröffentlicht 30.09.2008 17:22:09
- Zuletzt bearbeitet 09.04.2025 00:30:58
Google Chrome 0.2.149.29 and 0.2.149.30 allows remote attackers to cause a denial of service (memory consumption) via an HTML document containing a carriage return ("\r\n\r\n") argument to the window.open function.