Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-1248 – The FileSystem API in Google Chrome before 40.0.2214.91 allows remote att

The FileSystem API in Google Chrome before 40.0.2214.91 allows remote attackers to bypass the SafeBrowsing for Executable Files protection mechanism by creating a .exe file in a temporary filesystem and then referencing this file with a filesystem:http: URL.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1248

Reference (s):

  • http://googlechromereleases.blogspot.com/2015/04/stable-channel-update_14.html
  • https://code.google.com/p/chromium/issues/detail?id=380663
  • DEBIAN:DSA-3238
  • URL: http://www.debian.org/security/2015/dsa-3238
  • GENTOO:GLSA-201506-04
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-4743 - Multiple cross-site scripting (XSS) vulnerabilities in (1) search_ajax.tp

2021-current

CVE-2014-9838 - magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a

2021-current

CVE-2020-10447 - The way URIs are handled in admin/header.php in Chadha PHPKB Standard Mul