CVE-2025-1704
MEDIUM 6.5EPSS 0.2%
ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices and intercept device management requests via loading components from the unencrypted stateful partition.
- CVSS v3.1
- 6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - EPSS
- 0.20% chance of exploitation in the next 30 days, 10th percentile
- Published
- 2025-04-16
- Updated
- 2025-05-08