CVE-2025-1121
Estado: AnalizadaMedia (6.8)—
Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access to gain root code execution and potentially unenroll enterprise-managed devices via a specially crafted recovery image.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Puntuación base: 6.8
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.14%
- Percentil entre todas las CVEs puntuadas: 3
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-269
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2025-1121",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2025-1121",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "poc"
},
{
"automatable": "no"
},
{
"technicalImpact": "total"
}
],
"version": "2.0.3",
"timestamp": "2025-03-07T19:38:04.878602Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 6.8,
"attackVector": "PHYSICAL",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "HIGH",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.9,
"exploitabilityScore": 0.9
}
]
},
"affected": [
{
"source": "7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f",
"affectedData": [
{
"vendor": "Google",
"product": "ChromeOS",
"versions": [
{
"status": "affected",
"version": "15786.48.2",
"lessThan": "15786.48.2",
"versionType": "custom"
}
]
}
]
}
],
"published": "2025-03-07T00:15:34.360",
"references": [
{
"url": "https://issues.chromium.org/issues/b/336153054",
"tags": [
"Broken Link",
"Issue Tracking",
"Vendor Advisory"
],
"source": "7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f"
},
{
"url": "https://issuetracker.google.com/issues/336153054",
"tags": [
"Issue Tracking",
"Vendor Advisory"
],
"source": "7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f"
},
{
"url": "https://issuetracker.google.com/issues/336153054",
"tags": [
"Issue Tracking",
"Vendor Advisory"
],
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0"
}
],
"vulnStatus": "Analyzed",
"weaknesses": [
{
"type": "Secondary",
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"description": [
{
"lang": "en",
"value": "CWE-269"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Privilege escalation in Installer and Recovery image handling in Google ChromeOS version 15786.48.2 on device allows an attacker with physical access to gain root code \nexecution and potentially unenroll enterprise-managed devices via a specially crafted recovery image."
},
{
"lang": "es",
"value": "La escalada de privilegios en la gestión de imágenes de instalación y recuperación en Google ChromeOS 123.0.6312.112 en el dispositivo permite que un atacante con acceso físico obtenga la ejecución del código raíz y potencialmente cancele la inscripción de dispositivos administrados por la empresa a través de una imagen de recuperación especialmente manipulada."
}
],
"lastModified": "2026-06-17T08:38:25.297",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:google:chrome_os:15786.48.0:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D681E31E-CF4E-4853-9837-77B14FF419E8"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "7f6e188d-c52a-4a19-8674-3c3fa7d1fc7f"
}