CVE-2015-9288

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
29/07/2019
Last modified:
01/08/2019

Description

The Unity Web Player plugin before 4.6.6f2 and 5.x before 5.0.3f2 allows attackers to read messages or access online services via a victim's credentials

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:unity:web_player:*:*:*:*:*:*:*:* 4.6.6f2 (excluding)
cpe:2.3:a:unity:web_player:*:*:*:*:*:*:*:* 5.0 (including) 5.0.3f2 (excluding)