CVE-2020-6392

Insufficient policy enforcement in extensions in Google Chrome prior to 80.0.3987.87 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:opensuse:backports_sle:15.0:sp1:*:*:*:*:*:*

Information

Published : 2020-02-11 15:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-6392

Mitre link : CVE-2020-6392


JSON object : View

Products Affected

google

  • chrome

opensuse

  • backports_sle
CWE
CWE-20

Improper Input Validation