CVE-2020-9359
- EPSS 2.64%
- Veröffentlicht 24.03.2020 14:15:13
- Zuletzt bearbeitet 21.11.2024 05:40:28
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
CVE-2020-10684
- EPSS 0.02%
- Veröffentlicht 24.03.2020 14:15:12
- Zuletzt bearbeitet 21.11.2024 04:55:50
A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, when using ansible_facts as a subkey of itself and promoting it to a variable when inject is enabled, overwriting the ansible_facts...
CVE-2019-17559
- EPSS 1.41%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:32:31
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and scheme parsing. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2019-17565
- EPSS 1.21%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 04:32:32
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and chunked encoding. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2020-1944
- EPSS 1.21%
- Veröffentlicht 23.03.2020 22:15:12
- Zuletzt bearbeitet 21.11.2024 05:11:40
There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and Transfer-Encoding and Content length headers. Upgrade to versions 7.1.9 and 8.0.6 or later versions.
CVE-2020-8865
- EPSS 3.9%
- Veröffentlicht 23.03.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:39:35
This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within edit.php. When parsin...
CVE-2020-8866
- EPSS 3.53%
- Veröffentlicht 23.03.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:39:35
This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmail Edition 5.2.22. Authentication is required to exploit this vulnerability. The specific flaw exists within add.php. The issue res...
CVE-2020-6420
- EPSS 0.49%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:41
Insufficient policy enforcement in media in Google Chrome prior to 80.0.3987.132 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
CVE-2020-6422
- EPSS 4.69%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:41
Use after free in WebGL in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6424
- EPSS 4.15%
- Veröffentlicht 23.03.2020 16:15:17
- Zuletzt bearbeitet 21.11.2024 05:35:42
Use after free in media in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.