CVE-2011-0778

EUVD-2011-0790
Google Chrome before 9.0.597.84 does not properly restrict drag and drop operations, which might allow remote attackers to bypass the Same Origin Policy via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
Affected Products (NVD)
VendorProductVersion
googlechrome
𝑥
≤ 9.0.597.83
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
dapper
dne
hardy
dne
karmic
dne
lucid
Fixed 14.0.835.202~r103287-0ubuntu0.10.04.2
released
maverick
Fixed 14.0.835.202~r103287-0ubuntu0.10.10.1
released
natty
not-affected
oneiric
not-affected
webkit
hardy
ignored
lucid
Fixed 1.2.7-0ubuntu0.10.04.1
released
maverick
Fixed 1.2.7-0ubuntu0.10.10.1
released
natty
not-affected
oneiric
not-affected
Common Weakness Enumeration