Remote Code Execution via Crafted Click-to-Call Link in Google Chrome (CVE-2021-30563)

Remote Code Execution via Crafted Click-to-Call Link in Google Chrome (CVE-2021-30563)

CVE-2021-30589 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

Insufficient validation of untrusted input in Sharing in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to bypass navigation restrictions via a crafted click-to-call link.

Learn more about our Cis Benchmark Audit For Google Chrome.