4.3
CVSSv3

CVE-2016-1616

Published: 25/01/2016 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The CustomButton::AcceleratorPressed function in ui/views/controls/button/custom_button.cc in Google Chrome prior to 48.0.2564.82 allows remote malicious users to spoof URLs via vectors involving an unfocused custom button.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Several vulnerabilities were discovered in the chromium web browser CVE-2015-6792 An issue was found in the handling of MIDI files CVE-2016-1612 cloudfuzzer discovered a logic error related to receiver compatibility in the v8 javascript library CVE-2016-1613 A use-after-free issue was discovered in the pdfium library CVE-2016-1 ...
The CustomButton::AcceleratorPressed function in ui/views/controls/button/custom_buttoncc in Google Chrome before 480256482 allows remote attackers to spoof URLs via vectors involving an unfocused custom button ...