AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2013-6652

HIGH · CVSS 7.5 EPSS 1.24%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-02-24 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2013-6652
Severity
HIGH
CVSS
7.5
EPSS
1.24%
Windows Chrome

Original Filing — NVD Description

Directory traversal vulnerability in sandbox/win/src/named_pipe_dispatcher.cc in Google Chrome before 33.0.1750.117 on Windows allows attackers to bypass intended named-pipe policy restrictions in the sandbox via vectors related to (1) lack of checks for .. (dot dot) sequences or (2) lack of use of the \\?\ protection mechanism.