CVE-2014-6262
- EPSS 22.59%
- Veröffentlicht 12.02.2020 02:15:10
- Zuletzt bearbeitet 21.11.2024 02:14:03
Multiple format string vulnerabilities in the python module in RRDtool, as used in Zenoss Core before 4.2.5 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted third argu...
- EPSS 0.56%
- Veröffentlicht 11.02.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 05:11:13
An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_s...
CVE-2020-6415
- EPSS 2.92%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Inappropriate implementation in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6416
- EPSS 3.89%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Insufficient data validation in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6396
- EPSS 1.38%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:38
Inappropriate implementation in Skia in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
CVE-2020-6397
- EPSS 1.38%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:38
Inappropriate implementation in sharing in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof security UI via a crafted HTML page.
CVE-2020-6398
- EPSS 2.2%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:38
Use of uninitialized data in PDFium in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
CVE-2020-6400
- EPSS 1.92%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:39
Inappropriate implementation in CORS in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
CVE-2020-6402
- EPSS 3.17%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:39
Insufficient policy enforcement in downloads in Google Chrome on OS X prior to 80.0.3987.87 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension.
CVE-2020-6403
- EPSS 1.38%
- Veröffentlicht 11.02.2020 15:15:13
- Zuletzt bearbeitet 21.11.2024 05:35:39
Incorrect implementation in Omnibox in Google Chrome on iOS prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.