Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-04 CVE-2020-13834 Incorrect Authorization vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (with TEEGRIS) software.
network
low complexity
google CWE-863
7.5
2020-06-04 CVE-2020-13830 Information Exposure Through Log Files vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
network
low complexity
google CWE-532
7.5
2020-06-04 CVE-2020-13829 Unspecified vulnerability in Google Android 10.0/9.0
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software.
network
low complexity
google
7.5
2020-06-03 CVE-2020-6496 Use After Free vulnerability in multiple products
Use after free in payments in Google Chrome on MacOS prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google debian opensuse CWE-416
8.8
2020-06-03 CVE-2020-6453 Out-of-bounds Write vulnerability in Google Chrome
Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.162 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2020-06-03 CVE-2020-6419 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds write in V8 in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2020-06-03 CVE-2011-1805 Incorrect Type Conversion or Cast vulnerability in Google Chrome
Bad cast in CSS in Google Chrome prior to 11.0.0.0 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-704
8.8
2020-05-21 CVE-2020-6477 Link Following vulnerability in multiple products
Inappropriate implementation in installer in Google Chrome on OS X prior to 83.0.4103.61 allowed a local attacker to perform privilege escalation via a crafted file.
local
low complexity
google fedoraproject opensuse CWE-59
7.8
2020-05-21 CVE-2020-6474 Use After Free vulnerability in multiple products
Use after free in Blink in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google opensuse fedoraproject debian CWE-416
8.8
2020-05-21 CVE-2020-6468 Type Confusion vulnerability in multiple products
Type confusion in V8 in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google fedoraproject debian opensuse CWE-843
8.8