VulnerabilityModified
CVE-2012-6041
Double free vulnerability in GreenBrowser before 6.0.1002, when the keyword search bar (F6) is activated, allows remote attackers to execute arbitrary code via a crafted iframe.
MEDIUM 6.8EPSS 3.65%
Does this matter?
Lower severity and a low EPSS score (3.65%). Track it; it rarely justifies an emergency change on its own.
Description
Double free vulnerability in GreenBrowser before 6.0.1002, when the keyword search bar (F6) is activated, allows remote attackers to execute arbitrary code via a crafted iframe.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 3.65% probability · 89th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- morequick/greenbrowser
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2012-01/0079.htmlExploit
- http://www.securityfocus.com/bid/51393Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72351
- http://archives.neohapsis.com/archives/bugtraq/2012-01/0079.htmlExploit
- http://www.securityfocus.com/bid/51393Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/72351
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.