cvedb.io
CVE-2025-1704
MEDIUM · CVSS 6.5
EPSS exploitation probability: 0%
Published 2025-04-16T23:15:44.937 · Last modified 2026-06-17T08:39:38.053

Summary

ComponentInstaller Modification in ComponentInstaller in Google ChromeOS 15823.23.0 on Chromebooks allows enrolled users with local access to unenroll devices and intercept device management requests via loading components from the unencrypted stateful partition.

Affected products

google — chrome_os

Does this affect you?

Add your gear to cvedb and we'll alert you only when google ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.