Free and open-source vulnerability scanner
Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.
Install NowAvailable for macOS, Windows, and Linux
CVE-2013-6657
CVE information
Published
Last Modified
CVSSv2.0 Severity
Impact Analysis
Description
core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, inserts the about:blank URL during certain blocking of FORM elements within HTTP requests, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via unspecified vectors..
CVSSv2.0 Score
- Severity
- Medium
- Base Score
- 6.4/10
- Exploit Score
- 10/10
- Access Vector
- Network
- Access Complexity
- Low
- Authentication Required
- None
- Impact Score
- 4.9/10
- Confidentiality Impact
- Partial
- Availability Impact
- None
- Integrity Impact
- Partial
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:a:google:chrome:33.0.1750.1:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.89:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.51:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.44:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.39:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.73:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.70:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.22:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.41:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.66:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.12:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.92:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.16:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.65:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.46:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.85:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.79:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.106:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.52:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.38:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.88:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.93:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.110:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.11:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.104:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.61:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.0:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.34:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.31:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.36:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.23:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.112:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.47:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.9:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.28:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.69:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.55:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.109:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.10:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.81:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.49:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.57:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.71:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.45:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.115:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.108:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.5:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.40:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.29:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.76:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.13:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.58:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.75:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.63:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.6:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.20:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.59:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.3:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.25:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.82:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.64:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.113:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.50:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.60:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.26:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.19:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.18:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.8:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.42:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.7:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.21:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.80:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.68:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.90:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.77:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.111:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.35:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.43:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.27:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.4:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.48:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.15:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.56:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.24:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.30:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.67:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.107:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.2:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.14:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.74:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.62:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.91:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.83:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.53:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.37:*:*:*:*:*:*:* |
Yes
|
- | - | |
cpe:2.3:a:google:chrome:33.0.1750.54:*:*:*:*:*:*:* |
Yes
|
- | - |
References
- https://code.google.com/p/chromium/issues/detail?id=331060
- https://src.chromium.org/viewvc/blink?revision=164538&view=revision
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://lists.opensuse.org/opensuse-updates/2014-03/msg00006.html
- http://www.debian.org/security/2014/dsa-2883