漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Auth Bypass in Quick Share
Vulnerability Description
There exists a vulnerability in Quick Share/Nearby, where an attacker can bypass the accept file dialog on Quick Share Windows. Normally in Quick Share Windows app we can't send a file without the user accept from the receiving device if the visibility is set to everyone mode or contacts mode. We recommend upgrading to version 1.0.1724.0 of Quick Share or above
CVSS Information
CVSS:4.0/AV:A/AC:H/AT:P/PR:L/UI:N/VC:H/VI:L/VA:L/SC:H/SI:L/SA:L
Vulnerability Type
使用捕获-重放进行的认证绕过
Vulnerability Title
Google Nearby 安全漏洞
Vulnerability Description
Google Nearby是美国谷歌(Google)公司的一系列专注于连接的项目。用于构建跨设备体验。 Google Nearby 1.0.1724.0 版本之前存在安全漏洞,该漏洞源于可以绕过 QuickShare 的接受文件对话框。
CVSS Information
N/A
Vulnerability Type
N/A