CVE-2020-1770
- EPSS 0.36%
- Veröffentlicht 27.03.2020 13:15:15
- Zuletzt bearbeitet 21.11.2024 05:11:21
Support bundle generated files could contain sensitive information that might be unwanted to be disclosed. This issue affects: ((OTRS)) Community Edition: 5.0.41 and prior versions, 6.0.26 and prior versions. OTRS: 7.0.15 and prior versions.
CVE-2020-1772
- EPSS 0.59%
- Veröffentlicht 27.03.2020 13:15:15
- Zuletzt bearbeitet 21.11.2024 05:11:21
It's possible to craft Lost Password requests with wildcards in the Token value, which allows attacker to retrieve valid Token(s), generated by users which already requested new passwords. This issue affects: ((OTRS)) Community Edition 5.0.41 and pri...
CVE-2020-6422
- EPSS 2.88%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:41
Use after free in WebGL in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6424
- EPSS 2.61%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Use after free in media in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6426
- EPSS 1.26%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6427
- EPSS 2.92%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6428
- EPSS 2.92%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6429
- EPSS 2.92%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6449
- EPSS 2.82%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:45
Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-10593
- EPSS 1.22%
- Veröffentlicht 23.03.2020 13:15:13
- Zuletzt bearbeitet 21.11.2024 04:55:39
Tor before 0.3.5.10, 0.4.x before 0.4.1.9, and 0.4.2.x before 0.4.2.7 allows remote attackers to cause a Denial of Service (memory leak), aka TROVE-2020-004. This occurs in circpad_setup_machine_on_circ because a circuit-padding machine can be negoti...