PoC Index

CVE-2025-1704

MEDIUM 6.5EPSS 0.2%

ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices and intercept device management requests via loading components from the unencrypted stateful partition.

CVSS v3.1
6.5 MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS
0.20% chance of exploitation in the next 30 days, 10th percentile
Published
2025-04-16
Updated
2025-05-08

Proof-of-concept exploits (1)

References

Related