PT-2018-5809 · Google · Chrome Os+1

Yakov Shafranovich

·

Publicado

2018-02-07

·

Atualizado

2019-10-03

·

CVE-2017-15397

CVSS v3.1

7.4

Alta

VetorAV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Google Chrome OS versions prior to 62.0.3202.74
Description: The issue is related to an inappropriate implementation in ChromeVox, which allowed a remote attacker in a privileged network position to observe or tamper with certain cleartext HTTP requests.
Recommendations: For versions prior to 62.0.3202.74, update to version 62.0.3202.74 or later to resolve the issue.

Correção

Missing Encryption of Sensitive Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-15397

Produtos afetados

Chrome Os
Chromevox