|
197251
|
6.3 |
MEDIUM
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux leap backports_sle
|
Uninitialized use in WebRTC in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-908
Use of Uninitialized Resource
|
CVE-2020-6444
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197252
|
8.8 |
HIGH
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Insufficient data validation in developer tools in Google Chrome prior to 81.0.4044.92 allowed a remote attacker who had convinced the user to use devtools to execute arbitrary code via a crafted HTM…
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2020-6443
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197253
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Inappropriate implementation in cache in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-6442
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197254
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Insufficient policy enforcement in omnibox in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to bypass security UI via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6441
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197255
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Inappropriate implementation in extensions in Google Chrome prior to 81.0.4044.92 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information…
|
NVD-CWE-noinfo
|
CVE-2020-6440
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197256
|
8.8 |
HIGH
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Insufficient policy enforcement in navigations in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to bypass security UI via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6439
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197257
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports_sle
|
Insufficient policy enforcement in extensions in Google Chrome prior to 81.0.4044.92 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive informat…
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-6438
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197258
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Inappropriate implementation in WebView in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to spoof security UI via a crafted application.
|
NVD-CWE-Other
|
CVE-2020-6437
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197259
|
8.8 |
HIGH
Network
|
google fedoraproject debian opensuse
|
chrome fedora debian_linux leap backports_sle
|
Use after free in window management in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6436
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197260
|
4.3 |
MEDIUM
Network
|
google debian fedoraproject opensuse
|
chrome debian_linux fedora leap backports
|
Insufficient policy enforcement in extensions in Google Chrome prior to 81.0.4044.92 allowed a remote attacker who had compromised the renderer process to bypass navigation restrictions via a crafted…
|
NVD-CWE-noinfo
|
CVE-2020-6435
|
2024-11-21 14:35 |
2020-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|