5
CVSSv2

CVE-2012-4906

Published: 13/09/2012 Updated: 14/09/2012
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Google Chrome prior to 18.0.1025308 on Android does not properly restrict access to file: URLs, which allows remote malicious users to obtain sensitive information via unspecified vectors, as demonstrated by obtaining credential data, a different vulnerability than CVE-2012-4903.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Exploits

source: wwwsecurityfocuscom/bid/55523/info Google Chrome for Android is prone to multiple vulnerabilities Attackers may exploit these issues to execute arbitrary code in the context of the browser, obtain potentially sensitive information, bypass the same-origin policy, and steal cookie-based authentication credentials; other attacks ...
Chrome for Android suffers from an issue where a malicious application has the ability to steal private information Version 1801025308 was released to address this vulnerability ...