PT-2017-10164 · Brave · Brave Browser
Aaditya_Purani
·
Publicado
2017-03-28
·
Atualizado
2021-03-19
·
CVE-2016-9473
CVSS v3.1
4.7
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Brave Browser iOS versions prior to 1.2.18
Brave Browser Android versions prior to 1.9.56
Description
The issue allows attackers to trick victims by displaying a malicious page for legitimate domain names through Full Address Bar Spoofing.
Recommendations
For Brave Browser iOS versions prior to 1.2.18, update to version 1.2.18 or later.
For Brave Browser Android versions prior to 1.9.56, update to version 1.9.56 or later.
Exploit
Correção
XSS
UI Misrepresentation of Critical Information
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Brave Browser