← Back

CVE-2019-6251

nvd nist
Published: Jan 14, 2019Modified: Nov 21, 2024

JSON object

Loading...
8.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
Exploitability: 2.8 / Impact: 5.2
Source: NVD

Description

WebKitGTK and WPE WebKit prior to version 2.24.1 are vulnerable to address bar spoofing upon certain JavaScript redirections. An attacker could cause malicious web content to be displayed as if for a trusted URI. This is similar to the CVE-2018-8383 issue in Microsoft Edge.

Affected (10)

Products: Gnome: Epiphany · Webkitgtk: Webkitgtk · Wpewebkit: Wpe Webkit · +3 more
Show all products
1 product
Epiphany
1 product
Webkitgtk
1 product
Wpe Webkit
1 product
Fedora
1 product
Ubuntu Linux
1 product
Leap
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.31.4
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Before 2.24.1
Before 2.24.1
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 28
Version 29
Version 30
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 18.04
Version 18.10
Configuration E
2 vulnerable
Vulnerable SoftwareAffected Versions
Opensuse
Version 15.0
Version 42.3

References (30)

Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
Issue TrackingVendor Advisory
Source: cve@mitre.org
ExploitPatchThird Party Advisory
Source: cve@mitre.org
Mailing ListThird Party Advisory
Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.