|
199501
|
5.4 |
MEDIUM
Network
|
sap
|
enable_now
|
SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to Information Disclosure.
|
CWE-200
Information Exposure
|
CVE-2020-6178
|
2024-11-21 14:35 |
2020-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199502
|
8.8 |
HIGH
Network
|
google fedoraproject redhat debian
|
chrome fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-843
Type Confusion
|
CVE-2020-6418
|
2024-11-21 14:35 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199503
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Out of bounds memory access in streams in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6407
|
2024-11-21 14:35 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199504
|
8.8 |
HIGH
Network
|
google fedoraproject redhat debian
|
chrome fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Use after free in speech in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6386
|
2024-11-21 14:35 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199505
|
8.8 |
HIGH
Network
|
google fedoraproject redhat debian
|
chrome fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Use after free in WebAudio in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6384
|
2024-11-21 14:35 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199506
|
8.8 |
HIGH
Network
|
google fedoraproject redhat debian
|
chrome fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux
|
Type confusion in V8 in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-843
Type Confusion
|
CVE-2020-6383
|
2024-11-21 14:35 |
2020-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199507
|
7.5 |
HIGH
Network
|
coturn_project debian fedoraproject canonical
|
coturn debian_linux fedora ubuntu_linux
|
An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST request can lead to server crash and denial of service. …
|
CWE-476
NULL Pointer Dereference
|
CVE-2020-6062
|
2024-11-21 14:35 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199508
|
9.8 |
CRITICAL
Network
|
coturn_project fedoraproject debian canonical
|
coturn fedora debian_linux ubuntu_linux
|
An exploitable heap out-of-bounds read vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST request can lead to information leaks and other mi…
|
CWE-125
Out-of-bounds Read
|
CVE-2020-6061
|
2024-11-21 14:35 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199509
|
8.8 |
HIGH
Network
|
accusoft
|
imagegear
|
An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG pngread parser of the Accusoft ImageGear 19.5.0 library. A specially crafted PNG file can cause an out-of-bounds write…
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6068
|
2024-11-21 14:35 |
2020-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
199510
|
6.1 |
MEDIUM
Network
|
sap
|
netweaver_knowledge_management
|
SAP NetWeaver (Knowledge Management ICE Service), versions 7.30, 7.31, 7.40, 7.50, allows an unauthenticated attacker to execute malicious scripts leading to Reflected Cross-Site Scripting (XSS) vuln…
|
CWE-79
Cross-site Scripting
|
CVE-2020-6193
|
2024-11-21 14:35 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|