← Back

CVE-2002-1442

nvd nist
Published: Apr 11, 2003Modified: Apr 16, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The Google toolbar 1.1.58 and earlier allows remote web sites to perform unauthorized toolbar operations including script execution and file reading in other zones such as "My Computer" by opening a window to tools.google.com or the res: protocol, then using script to modify the window's location to the toolbar's configuration URL, which bypasses the origin verification check.

Affected (14)

Products: Google: Toolbar
1 product
Toolbar
Configuration A
14 vulnerable
Vulnerable SoftwareAffected Versions
Google
Version 1.1.41
Version 1.1.42
Version 1.1.43
Version 1.1.44
Version 1.1.45
Version 1.1.47
Version 1.1.48
Version 1.1.49
Version 1.1.53
Version 1.1.54
Version 1.1.55
Version 1.1.56
Version 1.1.57
Version 1.1.58

References (8)

Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory

Timeline

No history available yet.