CVE detail
CVE-2013-2879 — CVE-2013-2879
Published 2013-07-10 · Modified 2026-06-16 · Vendor google · Product chrome · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0092
EPSS probability
exploitation probability, 30d
57.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Google Chrome before 28.0.1500.71 does not properly determine the circumstances in which a renderer process can be considered a trusted process for sign-in and subsequent sync operations, which makes it easier for remote attackers to conduct phishing attacks via a crafted web site.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References