PT-2011-4769 · Google+1 · Google Chrome+1

Published

2011-11-10

·

Updated

2020-05-08

·

CVE-2011-3898

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 15.0.874.120
Description The issue allows remote attackers to have an unspecified impact via a crafted applet when Java Runtime Environment (JRE) 7 is used, as Google Chrome does not request user confirmation before applet execution begins.
Recommendations For versions prior to 15.0.874.120, update to version 15.0.874.120 or later to resolve the issue.

Fix

Improper Privilege Management

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2011-3898

Affected Products

Google Chrome
Java Runtime Environment