Loading
The gnome-shell plugin 3.4.1 in GNOME allows remote attackers to force the download and installation of arbitrary extensions from extensions.gnome.org via a crafted web page.
Use CWE-94, Gnome vendor hub and Gnome-Shell product page to widen CVE-2012-4427 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-8288, CVE-2014-7300 and CVE-2010-4000 for nearby disclosures in the same product family.