CVE-2020-2601
- EPSS 0.64%
- Veröffentlicht 15.01.2020 17:15:20
- Zuletzt bearbeitet 21.11.2024 05:25:41
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unau...
CVE-2020-2604
- EPSS 1.7%
- Veröffentlicht 15.01.2020 17:15:20
- Zuletzt bearbeitet 21.11.2024 05:25:42
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows...
CVE-2020-2583
- EPSS 0.52%
- Veröffentlicht 15.01.2020 17:15:19
- Zuletzt bearbeitet 21.11.2024 05:25:37
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Serialization). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows...
CVE-2020-2590
- EPSS 0.45%
- Veröffentlicht 15.01.2020 17:15:19
- Zuletzt bearbeitet 21.11.2024 05:25:39
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Security). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows unau...
CVE-2020-2593
- EPSS 0.64%
- Veröffentlicht 15.01.2020 17:15:19
- Zuletzt bearbeitet 21.11.2024 05:25:40
Vulnerability in the Java SE, Java SE Embedded product of Oracle Java SE (component: Networking). Supported versions that are affected are Java SE: 7u241, 8u231, 11.0.5 and 13.0.1; Java SE Embedded: 8u231. Difficult to exploit vulnerability allows un...
CVE-2015-3147
- EPSS 0.51%
- Veröffentlicht 14.01.2020 18:15:10
- Zuletzt bearbeitet 21.11.2024 02:28:46
daemon/abrt-handle-upload.in in Automatic Bug Reporting Tool (ABRT), when moving problem reports from /var/spool/abrt-upload, allows local users to write to arbitrary files or possibly have other unspecified impact via a symlink attack on (1) /var/sp...
CVE-2014-7844
- EPSS 0.55%
- Veröffentlicht 14.01.2020 17:15:11
- Zuletzt bearbeitet 21.11.2024 02:18:07
BSD mailx 8.1.2 and earlier allows remote attackers to execute arbitrary commands via a crafted email address.
CVE-2020-6851
- EPSS 1.43%
- Veröffentlicht 13.01.2020 06:15:10
- Zuletzt bearbeitet 21.11.2024 05:36:17
OpenJPEG through 2.3.1 has a heap-based buffer overflow in opj_t1_clbl_decode_processor in openjp2/t1.c because of lack of opj_j2k_update_image_dimensions validation.
CVE-2019-17016
- EPSS 2.93%
- Veröffentlicht 08.01.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:31:32
When pasting a <style> tag from the clipboard into a rich text editor, the CSS sanitizer incorrectly rewrites a @namespace rule. This could allow for injection into certain types of websites resulting in data exfiltration. This vulnerability af...
CVE-2019-17017
- EPSS 2.63%
- Veröffentlicht 08.01.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:31:33
Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Fire...