ZeroHour

CVE-2019-3562

CVSS 3.0
6.1 medium
EPSS
1%p64
Published
()
Modified
Description

A remote web page could inject arbitrary HTML code into the Oculus Browser UI, allowing an attacker to spoof UI and potentially execute code. This affects the Oculus Browser starting from version 5.2.7 until 5.7.11.

Vendors
oculus
Products
oculus browser
Weakness
CWE-74, CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.