CVE-2018-12448
NONE EPSS 50.9%
Published Aug 2, 20187y ago · Modified Jun 17, 20262w ago
Published Aug 2, 2018 7y ago
Last Modified Jun 17, 2026 2w ago
Description
Whale Browser before 1.3.48.4 displays no URL information but only a title of a web page on the browser's address bar when visiting a non-http page, which allows an attacker to display a malicious web page with a fake domain name.
Threat Intelligence
EPSS Exploit Probability
50.9% percentile
Exploit & Patch Status
No Known Exploit
No Patch Available
Weaknesses 1
CWE-20 Improper Input Validation Validation
Affected Products 1
| Vendor | Product | Version | Range |
|---|---|---|---|
| navercorp | whale | * | <1.3.48.4 |
References 1
- cve.naver.com https://cve.naver.com/detail/cve-2018-12448.html
Remediation
No remediation data recorded yet
Check vendor advisories and the NVD entry for patch availability.