CVE-2023-7281

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Sep 23, 2024
Updated: Sep 26, 2024
CWE ID 451

Summary

CVE-2023-7281 is a vulnerability found in Google Chrome versions prior to 119.0.6045.105 that allows remote attackers to execute UI spoofing via a specially crafted HTML page. This issue affects various products running the affected versions of Chromium, which could potentially lead to misleading user interactions and unauthorized actions. To remediate this vulnerability, organizations are advised to update their Google Chrome installations to the latest version where the flaw has been addressed. The exploitation of this vulnerability poses a medium risk, as it requires user interaction and can result in low integrity impact without any confidentiality or availability issues. The attack vector is over the network, making it crucial for users to remain vigilant against deceptive content while using outdated browser versions.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share