Vulnerabilities
Vulnerable Software
Google:  >> Toolbar  >> 1.1.60  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in Google Toolbar 2.0.114.1 allows remote attackers to inject arbitrary web script via about.html in the About section. NOTE: some followup posts suggest that the demonstration code's use of the res:// protocol does not cross privilege boundaries, since it is not allowed in the Internet Zone. Thus this might not be a vulnerability.
CVSS Score
4.3
EPSS Score
0.009
Published
2004-12-31
The Google toolbar 1.1.60, when running on Internet Explorer 5.5 and 6.0, allows remote attackers to cause a denial of service (crash with an exception in oleaut32.dll) via malicious HTML, possibly related to small width and height parameters or an incorrect call to the Google.Search() function.
CVSS Score
2.6
EPSS Score
0.171
Published
2002-08-15


Contact Us

Shodan ® - All rights reserved