CVE-2020-6418
- EPSS 85.05%
- Veröffentlicht 27.02.2020 23:15:12
- Zuletzt bearbeitet 24.10.2025 21:04:01
Type confusion in V8 in Google Chrome prior to 80.0.3987.122 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6409
- EPSS 0.64%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:40
Inappropriate implementation in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker who convinced the user to enter a URI to bypass navigation restrictions via a crafted domain name.
CVE-2020-6410
- EPSS 1.57%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:40
Insufficient policy enforcement in navigation in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to confuse the user via a crafted domain name.
CVE-2020-6411
- EPSS 0.78%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:40
Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2020-6412
- EPSS 0.58%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:40
Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
CVE-2020-6413
- EPSS 0.86%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:40
Inappropriate implementation in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass HTML validators via a crafted HTML page.
CVE-2020-6414
- EPSS 0.86%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Insufficient policy enforcement in Safe Browsing in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
CVE-2020-6415
- EPSS 2.92%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Inappropriate implementation in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6416
- EPSS 3.89%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Insufficient data validation in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
CVE-2020-6417
- EPSS 0.08%
- Veröffentlicht 11.02.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 05:35:41
Inappropriate implementation in installer in Google Chrome prior to 80.0.3987.87 allowed a local attacker to execute arbitrary code via a crafted registry entry.