Google Chrome contains a flaw in the UI when handling basic authentication as the realm may be spoofed. With a specially crafted web page, a context-dependent attacker can conduct phishing attacks.
Classification
Location:
Context Dependent
Attack Type:
Authentication Management
Impact:
Loss of Integrity
Solution:
Upgrade
Exploit:
Exploit Private
Disclosure:
Vendor Verified,
Coordinated Disclosure
OSVDB:
Web Related
Solution
Upgrade to version 13.0.782.107 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.