Revision Date: | 2013-08-12 | Version: | 40 |
Title: | Cross-site request forgery in Google Chrome version before 4.1.249.1059. |
Description: | Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a crafted synchronous preflight XMLHttpRequest operation. |
Family: | windows | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2010-1767
|
Platform(s): | Microsoft Windows 2000 Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows XP
| Product(s): | Google Chrome
|
Definition Synopsis |
Google Chrome is installed AND Check if Google Chrome version is less than 4.1.249.1059
|