Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Remkoboonstra

#27181of 53,624
9.3Total CVSS
Vulnerabilities · 1
PT-2020-3396
9.3
2020-04-07
Google · Google Chrome · CVE-2020-6439
**Name of the Vulnerable Software and Affected Versions** Google Chrome versions prior to 81.0.4044.92 **Description** The issue is related to insufficient policy enforcement in navigations, allowing a remote attacker to bypass security UI via a crafted HTML page. This could potentially lead to unauthorized access to confidential data, disruption of data integrity, and denial of service. The exploitation is possible through a specially crafted HTML page. **Recommendations** For Google Chrome versions prior to 81.0.4044.92, update to version 81.0.4044.92 or later to resolve the issue. As a temporary workaround, consider restricting access to untrusted HTML pages to minimize the risk of exploitation.