4.3
CVSSv2

CVE-2012-4905

Published: 13/09/2012 Updated: 14/09/2012
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in Google Chrome prior to 18.0.1025308 on Android allows remote malicious users to inject arbitrary web script or HTML via an extra in an Intent object, aka "Universal XSS (UXSS)."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Exploits

source: wwwsecurityfocuscom/bid/55523/info Google Chrome for Android is prone to multiple vulnerabilities Attackers may exploit these issues to execute arbitrary code in the context of the browser, obtain potentially sensitive information, bypass the same-origin policy, and steal cookie-based authentication credentials; other attacks ar ...
Chrome for Android suffers from a universal cross site scripting vulnerability via comandroidbrowserapplication_id Version 1801025308 was released to address this vulnerability ...