Описание
Insufficient policy enforcement in Navigation in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
A flaw was found in Chromium. Insufficient policy enforcement within the Navigation component allows a remote attacker, who has compromised the renderer process, to potentially perform a sandbox escape. This vulnerability can be exploited via a specially crafted HTML page, leading to a bypass of security boundaries.
Отчет
This Important vulnerability in Chromium's Navigation component allows a remote attacker to perform a sandbox escape. Exploitation requires a prior compromise of the renderer process, typically through a crafted HTML page, enabling the attacker to bypass security boundaries and potentially gain further system access.
Дополнительная информация
Статус:
8.2 High
CVSS3
Связанные уязвимости
Insufficient policy enforcement in Navigation in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Insufficient policy enforcement in Navigation in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Insufficient policy enforcement in Navigation in Google Chrome prior t ...
Insufficient policy enforcement in Navigation in Google Chrome prior to 151.0.7922.109 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
8.2 High
CVSS3