Security Advisory

CVE-2021-25261

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-06-15 19:05:54
Last updated 2024-08-03 19:56:11
Assigner yandex
State PUBLISHED

Description

Local privilege vulnerability in Yandex Browser for Windows prior to 22.5.0.862 allows a local, low privileged, attacker to execute arbitary code with the SYSTEM privileges through manipulating symlinks to installation file during Yandex Browser update process.