vulnerability

Microsoft Edge Chromium: CVE-2024-7977 Insufficient data validation in Installer

Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Aug 21, 2024
Added
Aug 23, 2024
Modified
Jan 28, 2025

Description

Insufficient data validation in Installer in Google Chrome on Windows prior to 128.0.6613.84 allowed a local attacker to perform privilege escalation via a malicious file. (Chromium security severity: Medium)

Solution

microsoft-edge-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.