CVE-2012-2872

Cross-site scripting (XSS) vulnerability in an SSL interstitial page in Google Chrome before 21.0.1180.89 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.0:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.1:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.2:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.31:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.32:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.33:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.34:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.35:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.36:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.37:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.38:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.39:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.41:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.46:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.47:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.48:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.49:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.50:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.51:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.52:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.53:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.54:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.55:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.56:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.57:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.59:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.60:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.61:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.62:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.63:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.64:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.68:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.69:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.70:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.71:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.72:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.73:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.74:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.75:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.76:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.77:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.78:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.79:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.80:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.81:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.82:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.83:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.84:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.85:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.86:*:*:*:*:*:*:*
cpe:2.3:a:google:chrome:21.0.1180.87:*:*:*:*:*:*:*

History

07 Nov 2023, 02:11

Type Values Removed Values Added
References (CONFIRM) http://code.google.com/p/chromium/issues/detail?id=142956 - Issue Tracking, Patch () http://code.google.com/p/chromium/issues/detail?id=142956 -
References (OSVDB) http://osvdb.org/85037 - () http://osvdb.org/85037 -
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/78181 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/78181 -
References (SUSE) http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00030.html - Third Party Advisory () http://lists.opensuse.org/opensuse-security-announce/2012-09/msg00030.html -
References (CONFIRM) http://googlechromereleases.blogspot.com/2012/08/stable-channel-update_30.html - Vendor Advisory () http://googlechromereleases.blogspot.com/2012/08/stable-channel-update_30.html -

Information

Published : 2012-08-31 19:55

Updated : 2023-12-10 11:16


NVD link : CVE-2012-2872

Mitre link : CVE-2012-2872

CVE.ORG link : CVE-2012-2872


JSON object : View

Products Affected

opensuse

  • opensuse

google

  • chrome
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')