Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-1248

Опубликовано: 14 апр. 2015
Источник: redhat
CVSS2: 6.4

Описание

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-352
https://bugzilla.redhat.com/show_bug.cgi?id=1211930chromium-browser: SafeBrowsing bypass

6.4 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

nvd
больше 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

debian
больше 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote ...

github
около 4 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

fstec
больше 11 лет назад

Уязвимость интерфейса File System API браузера Google Chrome, позволяющая удаленному нарушителю обойти защитный механизм SafeBrowsing

6.4 Medium

CVSS2