Privilege Elevation Vulnerability in Google Chrome for Mac
CVE-2017-5099
8.8HIGH
Key Information:
- Vendor
- Vendor
- CVE Published:
- 27 October 2017
Summary
An insufficient validation of untrusted input in PPAPI Plugins within Google Chrome for Mac prior to version 60.0.3112.78 allows remote attackers to potentially elevate their privileges via a specially crafted HTML page. This vulnerability may enable unauthorized actions by exploiting the flaws in input handling, emphasizing the necessity for continual updates and security measures.
Affected Version(s)
Google Chrome prior to 60.0.3112.78 for Mac Google Chrome prior to 60.0.3112.78 for Mac
References
CVSS V3.1
Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved