PT-2022-21837 · Google · Google Chrome

Published

2022-08-05

·

Updated

2023-07-21

·

CVE-2022-33720

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions AppLock versions prior to SMR Aug-2022 Release 1
Description The issue is related to improper authentication, allowing a physical attacker to bypass the lock and access Chrome when it is locked by AppLock. This can be achieved via a new tap shortcut.
Recommendations For versions prior to SMR Aug-2022 Release 1, update to SMR Aug-2022 Release 1 or later to resolve the issue.

Fix

Improper Access Control

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-33720

Affected Products

Google Chrome