|
219131
|
6.5 |
MEDIUM
Network
|
google opensuse
|
chrome leap backports_sle
|
Incorrect handling of cancelled requests in Navigation in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2019-5794
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219132
|
6.5 |
MEDIUM
Network
|
google opensuse
|
chrome leap backports
|
Insufficient policy enforcement in extensions in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to initiate the extensions installation user interface via a crafted HTML page.
|
CWE-20
Improper Input Validation
|
CVE-2019-5793
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219133
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
Integer overflow in PDFium in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially perform out of bounds memory access via a crafted PDF file.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-5792
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219134
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
Inappropriate optimization in V8 in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
|
CWE-125 CWE-843
Out-of-bounds Read Type Confusion
|
CVE-2019-5791
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219135
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
An integer overflow leading to an incorrect capacity of a buffer in JavaScript in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafte…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2019-5790
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219136
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
An integer overflow that leads to a use-after-free in WebMIDI in Google Chrome on Windows prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary…
|
CWE-190 CWE-416
Integer Overflow or Wraparound Use After Free
|
CVE-2019-5789
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219137
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
An integer overflow that leads to a use-after-free in Blink Storage in Google Chrome on Linux prior to 73.0.3683.75 allowed a remote attacker who had compromised the renderer process to execute arbit…
|
CWE-190 CWE-416
Integer Overflow or Wraparound Use After Free
|
CVE-2019-5788
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219138
|
8.8 |
HIGH
Network
|
google opensuse
|
chrome leap backports
|
Use-after-garbage-collection in Blink in Google Chrome prior to 73.0.3683.75 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787 CWE-416
Out-of-bounds Write Use After Free
|
CVE-2019-5787
|
2024-11-21 13:45 |
2019-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219139
|
7.8 |
HIGH
Local
|
bluecats
|
bc_reveal
|
The iOS mobile application BlueCats Reveal before 5.14 stores the username and password in the app cache as base64 encoded strings, i.e. clear text. These persist in the cache even if the user logs o…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-5627
|
2024-11-21 13:45 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
219140
|
7.8 |
HIGH
Local
|
bluecats
|
bluecats_reveal
|
The Android mobile application BlueCats Reveal before 3.0.19 stores the username and password in a clear text file. This file persists until the user logs out or the session times out from non-usage …
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2019-5626
|
2024-11-21 13:45 |
2019-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|