CVE Published: 23/09/2024 |
CVE Updated: 24/09/2024 |
CVE Year: 2024 Source: Chrome |
Vendor: Google |
Product: Chrome Status : PUBLISHED
CVE-2024-7023 Description
Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)
CWE-ID: CWE Name: Insufficient data validation in Updater in Google Chrome prior to 128.0.6537.0 allowed a remote attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium) Source: Google
Common Attack Pattern Enumeration and Classification (CAPEC)