10

CVE-2021-33970

Exploit
Buffer Overflow vulnerability in Qihoo 360 Chrome v13.0.2170.0 allows attacker to escalate priveleges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Browser.360Chrome Version13.0.2170.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.09% 0.86
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 3.9 6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
134c704f-9b21-4f2e-91b3-4a467353bcc0 10 3.9 6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CWE-843 Access of Resource Using Incompatible Type ('Type Confusion')

The product allocates or initializes a resource such as a pointer, object, or variable using one type, but it later accesses that resource using a type that is incompatible with the original type.

https://MemoryCorruptor.blogspot.com/p/vulnerabilities-disclosures.html
Third Party Advisory
https://www.youtube.com/channel/UCLJ6fZxUqbmPe4jiwC6o4hg/
Exploit
https://pastebin.com/Qug7tquW
Third Party Advisory
Exploit