CVE-2012-2647: Infoleak
Published Jul 31, 2012
·Updated
Yahoo! Toolbar 1.0.0.5 and earlier for Chrome and Safari allows remote attackers to modify the configured search URL, and intercept search terms, via a crafted web page.
Affected Software
3 affected components
Yahoo Toolbar<=1.0.0.5
Safari
Google Chrome
Event History
Jul 31, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-2647?
CVE-2012-2647 is considered a high-severity vulnerability due to its ability to allow remote attackers to modify search URLs and intercept user search terms.
2
How do I fix CVE-2012-2647?
To fix CVE-2012-2647, update to the latest version of Yahoo! Toolbar that addresses this vulnerability.
3
Which software versions are affected by CVE-2012-2647?
CVE-2012-2647 affects Yahoo! Toolbar version 1.0.0.5 and earlier.
4
How can CVE-2012-2647 impact user privacy?
CVE-2012-2647 can significantly impact user privacy by allowing attackers to intercept and modify search queries.
5
Is my browser at risk from CVE-2012-2647?
No, CVE-2012-2647 specifically affects Yahoo! Toolbar and does not impact Google Chrome or Apple Safari versions.