Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p32q-qwj8-v65w

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Simpliciti Locked Browser does not properly limit a user's actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.

Simpliciti Locked Browser does not properly limit a user's actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.

EPSS

Процентиль: 22%
0.00071
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

Simpliciti Locked Browser does not properly limit a user's actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.

EPSS

Процентиль: 22%
0.00071
Низкий