CVE-2010-4034
- EPSS 2.81%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted HTML document.
CVE-2010-4035
- EPSS 2.81%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly perform autofill operations for forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted HTML document.
CVE-2010-4036
- EPSS 1.13%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle the unloading of a page, which allows remote attackers to spoof URLs via unspecified vectors.
CVE-2010-4037
- EPSS 0.32%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 7.0.517.41 allows remote attackers to bypass the pop-up blocker via unknown vectors.
CVE-2010-4038
- EPSS 1.95%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
The Web Sockets implementation in Google Chrome before 7.0.517.41 does not properly handle a shutdown action, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVE-2010-4039
- EPSS 0.68%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 on Linux does not properly set the PATH environment variable, which has unspecified impact and attack vectors.
CVE-2010-4040
- EPSS 0.6%
- Published 21.10.2010 19:00:04
- Last modified 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle animated GIF images, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted image.
CVE-2010-3729
- EPSS 4.26%
- Published 05.10.2010 18:00:32
- Last modified 11.04.2025 00:51:21
The SPDY protocol implementation in Google Chrome before 6.0.472.62 does not properly manage buffers, which might allow remote attackers to execute arbitrary code via unspecified vectors.
CVE-2010-3730
- EPSS 0.51%
- Published 05.10.2010 18:00:32
- Last modified 11.04.2025 00:51:21
Google Chrome before 6.0.472.62 does not properly use information about the origin of a document to manage properties, which allows remote attackers to have an unspecified impact via a crafted web site, related to a "property pollution" issue.
CVE-2010-1822
- EPSS 2.97%
- Published 04.10.2010 21:00:03
- Last modified 11.04.2025 00:51:21
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service...