Google Chrome是美国谷歌(Google)公司开发的一款Web浏览器。Android是美国谷歌(Google)公司和开放手持设备联盟(简称OHA)共同开发的一套以Linux为基础的开源操作系统。 Android中的Android浏览器不能正确限制建立在HTTPS会话中的cookies的修改。中间人攻击者可借助HTTP响应中的Set-Cookie头覆盖或者删除任意cookies。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-7294 | Google Chrome Cookie修改漏洞 | |
| CVE-2011-2979 | Mozilla Bugzilla恶意代码执行漏洞 | |
| CVE-2011-2978 | Mozilla Bugzilla邮件更改通知恶意代码执行漏洞 | |
| CVE-2011-2977 | Mozilla Bugzilla越权访问漏洞 | |
| CVE-2011-2976 | Mozilla Bugzilla跨站脚本攻击漏洞 | |
| CVE-2011-2381 | Mozilla Bugzilla CRLF注入漏洞 | |
| CVE-2011-2380 | Mozilla Bugzilla恶意代码执行漏洞 | |
| CVE-2011-2379 | Mozilla Bugzilla Raw Unified模式跨站脚本攻击漏洞 | |
| CVE-2008-7297 | Opera Cookie修改漏洞 | |
| CVE-2008-7296 | Apple Safari Cookie修改漏洞 | |
| CVE-2008-7295 | Microsoft Internet Explorer Cookie修改漏洞 | |
| CVE-2011-2221 | Novell Data Synchronizer Mobility Pack权限许可和访问控制漏洞 | |
| CVE-2008-7293 | Mozilla Firefox Cookie修改漏洞 | |
| CVE-2008-7292 | Mozilla Bugzilla敏感信息泄露漏洞 | |
| CVE-2011-3012 | ioQuake3引擎远程代码执行漏洞 | |
| CVE-2011-3014 | Novell Data Synchronizer Mobility Pack敏感信息泄露漏洞 | |
| CVE-2011-3013 | Novell Data Synchronizer Mobility Pack WebAdmin加密问题漏洞 | |
| CVE-2011-2590 | UUSee UUPlayer ActiveX控件'Play()'方法输入验证漏洞 | |
| CVE-2011-2589 | UUSee UUPlayer ActiveX控件'SendLogAction()'方法远程代码执行漏洞 | |
| CVE-2011-2224 | Novell Data Synchronizer Mobility Pack跨站脚本攻击漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet