Описание
Insufficient policy enforcement in File System API in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to bypass file system restrictions via a crafted HTML page.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 103.0.5060.134-0ubuntu0.18.04.1 |
devel | not-affected | code not present |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | focal was not-affected [code not present] |
focal | not-affected | code not present |
impish | not-affected | code not present |
jammy | not-affected | code not present |
kinetic | not-affected | code not present |
trusty | ignored | end of standard support |
trusty/esm | DNE |
Показывать по
Ссылки на источники
EPSS
8.8 High
CVSS3
Связанные уязвимости
Insufficient policy enforcement in File System API in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to bypass file system restrictions via a crafted HTML page.
Chromium: CVE-2022-1857 Insufficient policy enforcement in File System API
Insufficient policy enforcement in File System API in Google Chrome pr ...
Insufficient policy enforcement in File System API in Google Chrome prior to 102.0.5005.61 allowed a remote attacker to bypass file system restrictions via a crafted HTML page.
Уязвимость интерфейса File System API браузеров Microsoft Edge и Google Chrome, позволяющая нарушителю обойти введенные ограничения безопасности
EPSS
8.8 High
CVSS3