Show filters
1,426 Total Results
Displaying 41-50 of 1,426
Sort by:
Attacker Value
Unknown

CVE-2013-4535

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
The virtqueue_map_sg function in hw/virtio/virtio.c in QEMU before 1.7.2 allows remote attackers to execute arbitrary files via a crafted savevm image, related to virtio-block or virtio-serial read.
Attacker Value
Unknown

CVE-2020-6396

Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Inappropriate implementation in Skia in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6408

Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potentially sensitive information via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6391

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient validation of untrusted input in Blink in Google Chrome prior to 80.0.3987.87 allowed a local attacker to bypass content security policy via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6393

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6382

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Type confusion in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6394

Disclosure Date: February 11, 2020 (last updated November 08, 2023)
Insufficient policy enforcement in Blink in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to bypass content security policy via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6406

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Use after free in audio in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6415

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Inappropriate implementation in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-6392

Disclosure Date: February 11, 2020 (last updated February 21, 2025)
Insufficient policy enforcement in extensions in Google Chrome prior to 80.0.3987.87 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.