|
196731
|
6.5 |
MEDIUM
Network
|
google opensuse fedoraproject debian
|
chrome leap backports_sle fedora debian_linux
|
Insufficient policy enforcement in tab strip in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a c…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6476
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196732
|
6.5 |
MEDIUM
Network
|
google opensuse fedoraproject debian
|
chrome leap backports_sle fedora debian_linux
|
Incorrect implementation in full screen in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spoof security UI via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6475
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196733
|
8.8 |
HIGH
Network
|
google opensuse fedoraproject debian
|
chrome leap backports_sle fedora debian_linux
|
Use after free in Blink in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-6474
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196734
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in Blink in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-203
Information Exposure Through Discrepancy
|
CVE-2020-6473
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196735
|
6.5 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive inf…
|
NVD-CWE-noinfo
|
CVE-2020-6472
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196736
|
9.6 |
CRITICAL
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6471
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196737
|
6.1 |
MEDIUM
Network
|
google fedoraproject opensuse debian
|
chrome fedora leap backports_sle debian_linux
|
Insufficient validation of untrusted input in clipboard in Google Chrome prior to 83.0.4103.61 allowed a local attacker to inject arbitrary scripts or HTML (UXSS) via crafted clipboard contents.
|
CWE-79
Cross-site Scripting
|
CVE-2020-6470
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196738
|
9.6 |
CRITICAL
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6469
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196739
|
8.8 |
HIGH
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux leap backports_sle
|
Type confusion in V8 in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-843
Out-of-bounds Write Type Confusion
|
CVE-2020-6468
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196740
|
8.8 |
HIGH
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Use after free in WebRTC in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2020-6467
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|