Lucene search

K
cvelistMitreCVELIST:CVE-2009-0411
HistoryFeb 03, 2009 - 7:00 p.m.

CVE-2009-0411

2009-02-0319:00:00
mitre
www.cve.org
7

AI Score

5.9

Confidence

Low

EPSS

0.003

Percentile

69.7%

Google Chrome before 1.0.154.46 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, which allows remote attackers to obtain sensitive information from cookies via XMLHttpRequest calls and other web script.

AI Score

5.9

Confidence

Low

EPSS

0.003

Percentile

69.7%

Related for CVELIST:CVE-2009-0411