5
CVSSv2

CVE-2009-0276

Published: 03/02/2009 Updated: 04/02/2009
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Cross-domain vulnerability in the V8 JavaScript engine in Google Chrome prior to 1.0.154.46 allows remote malicious users to bypass the Same Origin Policy via a crafted script that accesses another frame and reads its full URL and possibly other sensitive information, or modifies the URL of this frame.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

google chrome 1.0.154.36

google chrome 1.0.154.42

google chrome 1.0.154.39

google chrome 0.4.154.31

google chrome 0.4.154.18

google chrome 0.3.154.3

google chrome 0.3.154.0

google chrome 0.2.153.1

google chrome 0.2.152.1

google chrome 0.4.154.33

google chrome 0.4.154.22