Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-1248

Опубликовано: 14 апр. 2015
Источник: redhat
CVSS2: 6.4
EPSS Низкий

Описание

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-352
https://bugzilla.redhat.com/show_bug.cgi?id=1211930chromium-browser: SafeBrowsing bypass

EPSS

Процентиль: 67%
0.00553
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

nvd
почти 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

debian
почти 11 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote ...

github
больше 3 лет назад

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

fstec
почти 11 лет назад

Уязвимость интерфейса File System API браузера Google Chrome, позволяющая удаленному нарушителю обойти защитный механизм SafeBrowsing

EPSS

Процентиль: 67%
0.00553
Низкий

6.4 Medium

CVSS2