Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2015-1254
Description:core/dom/Document.cpp in Blink, as used in Google Chrome before 43.0.2357.65, enables the inheritance of the designMode attribute, which allows remote attackers to bypass the Same Origin Policy by leveraging the availability of editing.
Test IDs: 1.3.6.1.4.1.25623.1.0.703267  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2015-1254
BugTraq ID: 74723
http://www.securityfocus.com/bid/74723
Debian Security Information: DSA-3267 (Google Search)
http://www.debian.org/security/2015/dsa-3267
https://security.gentoo.org/glsa/201506-04
http://www.securitytracker.com/id/1032375
SuSE Security Announcement: openSUSE-SU-2015:0969 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-05/msg00091.html
SuSE Security Announcement: openSUSE-SU-2015:1877 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-11/msg00015.html




© 1998-2025 E-Soft Inc. All rights reserved.