VDB
CVE-2022-0343
CVE-2022-0343
PUBLISHED
CVSS 3.299999952316284 LOW
A local attacker, as a different local user, may be able to send a HTTP request to 127.0.0.1:10000 after the user (typically a developer) manually invoked the ./tools/run-dev-server script. It is recommended to upgrade to any version beyond 24.2
EPSS 0.09% · 0.5th percentile
Risk Scores
CVSS 3.1
3.299999952316284
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:N
EPSS Score
0.09%
0.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Google LLC | Perfetto Dev Scripts | unspecified |
| perfetto | 0 |
Timeline
- Mar 29, 2022 CVE Published
- Mar 30, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 10, 2022 EPSS Score
- Aug 30, 2022 EPSS Score
- Oct 20, 2022 EPSS Score
- Dec 10, 2022 EPSS Score
- Jan 30, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 21, 2023 EPSS Score
- May 11, 2023 EPSS Score
- Jul 1, 2023 EPSS Score