|
196701
|
4.3 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in notifications in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass notification restrictions via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6504
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196702
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in accessibility in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
|
CWE-209
Information Exposure Through an Error Message
|
CVE-2020-6503
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196703
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Incorrect implementation in permissions in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof security UI via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6502
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196704
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Insufficient policy enforcement in CSP in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass content security policy via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6501
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196705
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in interstitials in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6500
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196706
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Inappropriate implementation in AppCache in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass AppCache security restrictions via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6499
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196707
|
6.5 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
Incorrect implementation in user interface in Google Chrome on iOS prior to 83.0.4103.88 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6498
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196708
|
6.5 |
MEDIUM
Network
|
google debian
|
chrome debian_linux
|
Insufficient policy enforcement in Omnibox in Google Chrome on iOS prior to 83.0.4103.88 allowed a remote attacker to perform domain spoofing via a crafted URI.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6497
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196709
|
8.8 |
HIGH
Network
|
google debian opensuse
|
chrome debian_linux leap backports_sle
|
Use after free in payments in Google Chrome on MacOS prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2020-6496
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196710
|
6.5 |
MEDIUM
Network
|
google debian opensuse
|
chrome debian_linux leap backports
|
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.97 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox es…
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6495
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|