Vulnerability · NVD
CVE-2010-4483
CVE-2010-4483, Severity pending severity (CVSS —): 2 tracked apps concerned, all fixed or indeterminable on their current version.
- Severity (CVSS)
- -
- Exploitation
- 0.9 %
- Tracked apps
- 2
- Still exposed
- 0
EPSS, predicted over 30 days
Google Chrome before 8.0.552.215 does not properly restrict read access to videos derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive video data via a crafted web site.
EPSS
0.91%
above median
percentile 57.6%
Tracked apps referencing this CVE
For each app: the affected range, the fixing version, and where the tracked app stands today.
-
Affected ≤8.0.552.214 Fixed in > 8.0.552.214 Latest tracked - undetermined
-
Vulnerable CPE configurations (2)
| Vendor | Product | Platform | Versions | CPE 2.3 URI |
|---|---|---|---|---|
|
chrome All platforms (wildcard)
|
All platforms (wildcard) | ≤8.0.552.214 | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | |
|
chrome All platforms (wildcard)
|
All platforms (wildcard) | ≤8.0.552.214 | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |