Vulnerabilities > Google > Chrome > 11.0.696.56

DATE CVE VULNERABILITY TITLE RISK
2020-05-21 CVE-2020-6484 Incorrect Default Permissions vulnerability in multiple products
Insufficient data validation in ChromeDriver in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass navigation restrictions via a crafted request.
network
low complexity
google debian opensuse fedoraproject CWE-276
6.5
2020-05-21 CVE-2020-6483 Incorrect Default Permissions vulnerability in multiple products
Insufficient policy enforcement in payments in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject CWE-276
6.5
2020-05-21 CVE-2020-6482 Incorrect Default Permissions vulnerability in multiple products
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
network
low complexity
google opensuse fedoraproject debian CWE-276
6.5
2020-05-21 CVE-2020-6481 Insufficient policy enforcement in URL formatting in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to perform domain spoofing via a crafted domain name.
network
low complexity
google opensuse fedoraproject debian
6.5
2020-05-21 CVE-2020-6480 Incorrect Default Permissions vulnerability in multiple products
Insufficient policy enforcement in enterprise in Google Chrome prior to 83.0.4103.61 allowed a local attacker to bypass navigation restrictions via UI actions.
network
low complexity
google opensuse fedoraproject debian CWE-276
6.5
2020-05-21 CVE-2020-6479 Inappropriate implementation in sharing in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spoof security UI via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject
6.5
2020-05-21 CVE-2020-6478 Inappropriate implementation in full screen in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spoof security UI via a crafted HTML page.
network
low complexity
google debian opensuse fedoraproject
6.5
2020-05-21 CVE-2020-6477 Link Following vulnerability in multiple products
Inappropriate implementation in installer in Google Chrome on OS X prior to 83.0.4103.61 allowed a local attacker to perform privilege escalation via a crafted file.
local
low complexity
google fedoraproject opensuse CWE-59
7.8
2020-05-21 CVE-2020-6476 Incorrect Default Permissions vulnerability in multiple products
Insufficient policy enforcement in tab strip in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
network
low complexity
google opensuse fedoraproject debian CWE-276
6.5
2020-05-21 CVE-2020-6475 Incorrect implementation in full screen in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spoof security UI via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian
6.5