Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Inappropriate allowance of the setDownloadBehavior devtools protocol feature in Extensions in Google Chrome prior to 71.0.3578.80 allowed a remote attacker with control of an installed extension to access files on the local file system via a crafted Chrome Extension.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Google Chrome 输入验证错误漏洞
Vulnerability Description
Google Chrome是美国谷歌(Google)公司的一款Web浏览器。 Google Chrome 71.0.3578.80之前版本中的Extensions存在输入验证错误漏洞。远程攻击者可借助特制的Chrome扩展利用该漏洞访问本地文件系统上的文件。
CVSS Information
N/A
Vulnerability Type
N/A