Show filters
1,936 Total Results
Displaying 171-180 of 1,936
Sort by:
Attacker Value
Unknown

CVE-2020-6386

Disclosure Date: February 27, 2020 (last updated February 21, 2025)
Use after free in speech in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6384

Disclosure Date: February 27, 2020 (last updated February 21, 2025)
Use after free in WebAudio in Google Chrome prior to 80.0.3987.116 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-9327

Disclosure Date: February 21, 2020 (last updated February 21, 2025)
In SQLite 3.31.1, isAuxiliaryVtabOperator allows attackers to trigger a NULL pointer dereference and segmentation fault because of generated column optimizations.
Attacker Value
Unknown

CVE-2014-4650

Disclosure Date: February 20, 2020 (last updated February 21, 2025)
The CGIHTTPServer module in Python 2.7.5 and 3.3.4 does not properly handle URLs in which URL encoding is used for path separators, which allows remote attackers to read script source code or conduct directory traversal attacks and execute unintended code via a crafted character sequence, as demonstrated by a %2f separator.
Attacker Value
Unknown

CVE-2014-8089

Disclosure Date: February 17, 2020 (last updated February 21, 2025)
SQL injection vulnerability in Zend Framework before 1.12.9, 2.2.x before 2.2.8, and 2.3.x before 2.3.3, when using the sqlsrv PHP extension, allows remote attackers to execute arbitrary SQL commands via a null byte.
Attacker Value
Unknown

CVE-2020-3757

Disclosure Date: February 13, 2020 (last updated February 21, 2025)
Adobe Flash Player versions 32.0.0.321 and earlier, 32.0.0.314 and earlier, 32.0.0.321 and earlier, and 32.0.0.255 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.
Attacker Value
Unknown

CVE-2013-4535

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
The virtqueue_map_sg function in hw/virtio/virtio.c in QEMU before 1.7.2 allows remote attackers to execute arbitrary files via a crafted savevm image, related to virtio-block or virtio-serial read.
Attacker Value
Unknown

CVE-2020-6396

Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Inappropriate implementation in Skia in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6408

Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potentially sensitive information via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6391

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient validation of untrusted input in Blink in Google Chrome prior to 80.0.3987.87 allowed a local attacker to bypass content security policy via a crafted HTML page.