Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p4mw-xc4p-683j

Опубликовано: 07 июл. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on Lenovo devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus while the device is closed and using the screen capture feature.

An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on Lenovo devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus while the device is closed and using the screen capture feature.

EPSS

Процентиль: 1%
0.00009
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 6.1
nvd
7 месяцев назад

An Improper Access Control vulnerability in the Stylus Tools component of Google ChromeOS version 16238.64.0 on the garaged stylus devices allows a physical attacker to bypass the lock screen and access user files by removing the stylus while the device is closed and using the screen capture feature.

CVSS3: 6.1
fstec
7 месяцев назад

Уязвимость компонента Stylus Tools операционной системы Chrome OS, позволяющая нарушителю обойти ограничения безопасности

EPSS

Процентиль: 1%
0.00009
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-287