|
196711
|
6.5 |
MEDIUM
Network
|
google debian opensuse
|
chrome debian_linux leap backports_sle
|
Incorrect security UI in payments in Google Chrome on Android prior to 83.0.4103.97 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
|
NVD-CWE-noinfo
|
CVE-2020-6494
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196712
|
9.6 |
CRITICAL
Network
|
google debian opensuse
|
chrome debian_linux leap backports
|
Use after free in WebAuthentication in Google Chrome prior to 83.0.4103.97 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTM…
|
CWE-416
Use After Free
|
CVE-2020-6493
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196713
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.162 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6453
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196714
|
8.8 |
HIGH
Network
|
google
|
chrome
|
Out of bounds write in V8 in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-787
Out-of-bounds Write
|
CVE-2020-6419
|
2024-11-21 14:35 |
2020-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196715
|
9.1 |
CRITICAL
Network
|
epson
|
eb-1470ui_firmware
|
An exploitable authentication bypass vulnerability exists in the ESPON Web Control functionality of Epson EB-1470Ui MAIN: 98009273ESWWV107 MAIN2: 8X7325WWV303. A specially crafted series of HTTP requ…
|
CWE-287
Improper Authentication
|
CVE-2020-6091
|
2024-11-21 14:35 |
2020-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196716
|
6.5 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient data validation in site information in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spoof security UI via a crafted domain name.
|
NVD-CWE-noinfo
|
CVE-2020-6491
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196717
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient data validation in loader in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had been able to write to disk to leak cross-origin data via a crafted HTML page.
|
CWE-668
Exposure of Resource to Wrong Sphere
|
CVE-2020-6490
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196718
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Inappropriate implementation in developer tools in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had convinced the user to take certain actions in developer tools to obtain potent…
|
CWE-200
Information Exposure
|
CVE-2020-6489
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196719
|
4.3 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6488
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
196720
|
6.5 |
MEDIUM
Network
|
google debian opensuse fedoraproject
|
chrome debian_linux leap fedora backports_sle
|
Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
|
CWE-276
Incorrect Default Permissions
|
CVE-2020-6487
|
2024-11-21 14:35 |
2020-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|