Back

MEDIUM

chromium-browser: Inappropriate implementation in Network Authentication

Published Dec 11, 2018

Description

Failure to dismiss http auth dialogs on navigation in Network Authentication in Google Chrome on Android prior to 71.0.3578.80 allowed a remote attacker to confuse the user about the origin of an auto dialog via a crafted HTML page.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (0)

No CWE recorded.

References (11)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Chrome
Published Dec 11, 2018
Updated Aug 5, 2024
Reserved Oct 15, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Dec 4, 2018
ENISA EUVD
Assigner Chrome
Published Dec 11, 2018
Updated Aug 5, 2024
Exploited since n/a
EUVD-2018-10084