Lucene search

K
prionPRIOn knowledge basePRION:CVE-2016-5144
HistoryAug 07, 2016 - 7:59 p.m.

Path traversal

2016-08-0719:59:00
PRIOn knowledge base
www.prio-n.com
8

8.8 High

AI Score

Confidence

High

0.014 Low

EPSS

Percentile

86.4%

The Developer Tools (aka DevTools) subsystem in Blink, as used in Google Chrome before 52.0.2743.116, mishandles the script-path hostname, remoteBase parameter, and remoteFrontendUrl parameter, which allows remote attackers to bypass intended access restrictions via a crafted URL, a different vulnerability than CVE-2016-5143.

CPENameOperatorVersion
chromele52.0.2743.82