Vulnerabilities > CVE-2022-1132 - Incorrect Authorization vulnerability in Google Chrome

047910
CVSS 6.1 - MEDIUM
Attack vector
PHYSICAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
NONE
low complexity
google
CWE-863

Summary

Inappropriate implementation in Virtual Keyboard in Google Chrome on Chrome OS prior to 100.0.4896.60 allowed a local attacker to bypass navigation restrictions via physical access to the device.

Vulnerable Configurations

Part Description Count
Application
Google
7907
OS
Google
1

Common Weakness Enumeration (CWE)