The developer-tools process in Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, does not properly restrict privileges during interaction with a connected server, which has unspecified impact and attack vectors.
2013-02-23T21:55:01.343
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | chrome | < 25.0.1364.97 | Yes | |
Operating System | linux | linux_kernel | - | No |
Operating System | microsoft | windows | - | No |
Application | chrome | < 25.0.1364.99 | Yes | |
Operating System | apple | mac_os_x | - | No |