Lucene search

K
vulnrichmentChromeVULNRICHMENT:CVE-2023-7282
HistorySep 23, 2024 - 9:56 p.m.

CVE-2023-7282

2024-09-2321:56:30
Chrome
github.com
google chrome
navigation
domain spoofing
html page
chromium

AI Score

5.8

Confidence

High

SSVC

Exploitation

poc

Automatable

no

Technical Impact

partial

Inappropriate implementation in Navigation in Google Chrome prior to 113.0.5672.63 allowed a remote attacker who convinced a user to engage in specific UI gestures to perform domain spoofing via a crafted HTML page. (Chromium security severity: Low)

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*"
    ],
    "vendor": "google",
    "product": "chrome",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "lessThan": "113.0.5672.63",
        "versionType": "custom"
      }
    ],
    "defaultStatus": "unknown"
  }
]

AI Score

5.8

Confidence

High

SSVC

Exploitation

poc

Automatable

no

Technical Impact

partial

Related for VULNRICHMENT:CVE-2023-7282