PT-2003-1189 · Google · Google Toolbar
Publicado
2003-03-18
·
Atualizado
2008-09-05
·
CVE-2002-1442
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Google toolbar version 1.1.58 and earlier
Description
The issue allows remote web sites to perform unauthorized operations, including script execution and file reading in other zones, by bypassing the origin verification check. This is done by opening a window to a specific URL, then using script to modify the window's location to the toolbar's configuration URL.
Recommendations
For Google toolbar version 1.1.58 and earlier, at the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Google Toolbar