PT-2011-3130 · Google · Google Chrome

Cole Snodgrass

·

Published

2011-05-03

·

Updated

2020-05-22

·

CVE-2011-1435

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 11.0.696.57
Description The issue is related to the improper implementation of the tabs permission for extensions in Google Chrome, allowing remote attackers to read local files via a crafted extension.
Recommendations For versions prior to 11.0.696.57, update to version 11.0.696.57 or later to resolve the issue.

Exploit

Fix

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-1435

Affected Products

Google Chrome