CVE-2020-6564: Incorrect security UI in permissions
Inappropriate implementation in permissions in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to spoof the contents of a permission dialog via a crafted HTML page.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID is CVE-2020-6564.
What is the severity level of CVE-2020-6564?
The severity level of CVE-2020-6564 is medium.
Which versions of Google Chrome are affected by CVE-2020-6564?
Google Chrome versions prior to 85.0.4183.83 are affected by CVE-2020-6564.
How can a remote attacker exploit CVE-2020-6564?
A remote attacker can exploit CVE-2020-6564 by spoofing the contents of a permission dialog via a crafted HTML page.
Where can I find more information about CVE-2020-6564?
You can find more information about CVE-2020-6564 at the following references: [link1](http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00072.html), [link2](http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00078.html), [link3](http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00081.html).