Описание
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Ссылки
- Vendor Advisory
- ExploitIssue TrackingVendor Advisory
- Mailing List
- Mailing List
- Vendor Advisory
- ExploitIssue TrackingVendor Advisory
- Mailing List
- Mailing List
Уязвимые конфигурации
Одно из
EPSS
8.8 High
CVSS3
Дефекты
Связанные уязвимости
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Chromium: CVE-2024-1675 Insufficient policy enforcement in Download
Insufficient policy enforcement in Download in Google Chrome prior to ...
Insufficient policy enforcement in Download in Google Chrome prior to 122.0.6261.57 allowed a remote attacker to bypass filesystem restrictions via a crafted HTML page. (Chromium security severity: Medium)
Уязвимость компонента Download браузера Google Chrome и Microsoft Edge, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS
8.8 High
CVSS3