CVE-2010-3246 Information

Description

Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements which allows remote attackers to bypass the pop-up blocker via unknown vectors.

Reference

http://code.google.com/p/chromium/issues/detail?id=34414 http://googlechromereleases.blogspot.com/2010/09/stable-and-beta-channel-updates.html https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11752

Share on: