← Back

CVE-2013-2835

nvd nist
Published: Apr 16, 2013Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins, which allows remote attackers to bypass the domain-whitelist protection mechanism via a crafted web site, a different vulnerability than CVE-2013-2834.

Affected (54)

Products: Google: Chrome Os
1 product
Chrome Os
Configuration A
54 vulnerable
Vulnerable SoftwareAffected Versions
Google
Up to 26.0.1410.56
Version 26.0.1410.0
Version 26.0.1410.10
Version 26.0.1410.11
Version 26.0.1410.12
Version 26.0.1410.14
Version 26.0.1410.15
Version 26.0.1410.16
Version 26.0.1410.17
Version 26.0.1410.18
Version 26.0.1410.19
Version 26.0.1410.1
Version 26.0.1410.20
Version 26.0.1410.21
Version 26.0.1410.22
Version 26.0.1410.23
Version 26.0.1410.24
Version 26.0.1410.25
Version 26.0.1410.26
Version 26.0.1410.27
Version 26.0.1410.28
Version 26.0.1410.29
Version 26.0.1410.30
Version 26.0.1410.31
Version 26.0.1410.32
Version 26.0.1410.33
Version 26.0.1410.34
Version 26.0.1410.35
Version 26.0.1410.36
Version 26.0.1410.37
Version 26.0.1410.38
Version 26.0.1410.39
Version 26.0.1410.3
Version 26.0.1410.40
Version 26.0.1410.41
Version 26.0.1410.42
Version 26.0.1410.43
Version 26.0.1410.44
Version 26.0.1410.45
Version 26.0.1410.46
Version 26.0.1410.47
Version 26.0.1410.48
Version 26.0.1410.49
Version 26.0.1410.4
Version 26.0.1410.50
Version 26.0.1410.51
Version 26.0.1410.52
Version 26.0.1410.54
Version 26.0.1410.55
Version 26.0.1410.5
Version 26.0.1410.6
Version 26.0.1410.7
Version 26.0.1410.8
Version 26.0.1410.9

Related CWEs

Timeline

No history available yet.