Vulnerabilities > CVE-2017-18256 - Unspecified vulnerability in Brave Browser

047910
CVSS 6.5 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
brave
exploit available

Summary

Brave Browser before 0.13.0 allows remote attackers to cause a denial of service (resource consumption) via a long alert() argument in JavaScript code, because window dialogs are mishandled.

Vulnerable Configurations

Part Description Count
Application
Brave
1

Exploit-Db

descriptionBrave Browser < 0.13.0 - 'long alert() argument' Denial of Service. CVE-2017-18256. Local exploit for Windows platform
fileexploits/windows/dos/44474.txt
idEDB-ID:44474
last seen2018-05-24
modified2018-04-17
platformwindows
port
published2018-04-17
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/44474/
titleBrave Browser < 0.13.0 - 'long alert() argument' Denial of Service
typedos

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/147187/bravebrowserlong-dos.txt
idPACKETSTORM:147187
last seen2018-04-18
published2018-04-17
reporterSahil Tikoo
sourcehttps://packetstormsecurity.com/files/147187/Brave-Browser-Long-Argument-Denial-Of-Service.html
titleBrave Browser Long Argument Denial Of Service