ZeroHour

CVE-2016-8504

CVSS 3.0
4.3 medium
EPSS
<1%p45
Published
()
Modified
Description

CSRF of synchronization form in Yandex Browser for desktop before version 16.6 could be used by remote attacker to steal saved data in browser profile.

Vendors
yandex
Products
yandex browser
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.