ZeroHour

CVE-2021-30605

CVSS 3.1
7.8 high
EPSS
<1%p2
Published
()
Modified
Description

Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access rights on two objects allowing an attacker to potentially bypass discretionary access controls.

Vendors
google
Products
chrome os readiness tool
Weakness
CWE-287
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.