Aller au contenu
appaloosa scout logo main rounded
HIGH 8.8

CVE-2016-5196

The content renderer client in Google Chrome prior to 54.0.2840.85 for Android insufficiently enforced the Same Origin Policy amongst downloaded files, which allowed a remote attacker to access any downloaded file and interact with sites, including those the user was logged into, via a crafted HTML page.

CVSS v3 CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
google chrome Android ≤54.0.2840.68 cpe:2.3:a:google:chrome:*:*:*:*:*:android:*:*
Voir sur NVD ↗