关键漏洞信息 CVE: CVE-2011-2805 CVSS 2.0 Base Score: 4.3 CVSS 2.0 Temporal Score: 3.7 影响产品: Google Chrome 10.0.648.82, Google Chrome 10.0.601.0, Google Chrome 10.0.602.0, Google Chrome 10.0.603.0 漏洞类型: Cross Site Scripting (XSS) 影响: Attackers could steal victims' cookie-based authentication credentials 修复措施: Upgrade to the latest version of Google Chrome (13.0.782.107 or later) 报道日期: Nov 11, 2008 依赖产品: SRWare Iron 13.x 漏洞详情 Access Vector: Network Access Complexity: Medium Authentication: None Confidentiality Impact: None Integrity Impact: Partial Availability Impact: None Exploitability: High Remediation Level: Official Fix Report Confidence: Confirmed 参考链接 Google Chrome Releases Web site SRWare Web site BID-48960 CVE-2011-2805