Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28108
HistoryDec 06, 2020 - 3:05 a.m.

Improper Access Control

2020-12-0603:05:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
chromium
vulnerability
insufficient protection
webapks
google chrome
malicious application
web apis

EPSS

0.004

Percentile

75.0%

chromium is vulnerable to improper access control. The vulnerability exists due to insufficient protection of permission UI in WebAPKs in Google Chrome, allowing an attacker who convinced the user to install a malicious application to access web APIs via a crafted APK.