Vulnerabilities > Google > High

DATE CVE VULNERABILITY TITLE RISK
2020-06-10 CVE-2020-0115 Incorrect Authorization vulnerability in Google Android
In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to become the default handler for arbitrary domains.
local
low complexity
google CWE-863
7.8
2020-06-10 CVE-2020-0114 Unspecified vulnerability in Google Android 10.0
In onCreateSliceProvider of KeyguardSliceProvider.java, there is a possible confused deputy due to a PendingIntent error.
local
low complexity
google
7.8
2020-06-05 CVE-2020-13842 Unspecified vulnerability in Google Android
An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets).
local
low complexity
google
7.8
2020-06-04 CVE-2020-13836 Path Traversal vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software.
network
low complexity
google CWE-22
7.5
2020-06-04 CVE-2020-13834 Incorrect Authorization vulnerability in Google Android
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (with TEEGRIS) software.
network
low complexity
google CWE-863
7.5
2020-06-04 CVE-2020-13830 Information Exposure Through Log Files vulnerability in Google Android 9.0
An issue was discovered on Samsung mobile devices with P(9.0) software.
network
low complexity
google CWE-532
7.5
2020-06-04 CVE-2020-13829 Unspecified vulnerability in Google Android 10.0/9.0
An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software.
network
low complexity
google
7.5
2020-06-03 CVE-2020-6496 Use After Free vulnerability in multiple products
Use after free in payments in Google Chrome on MacOS prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
network
low complexity
google debian opensuse CWE-416
8.8
2020-06-03 CVE-2020-6453 Out-of-bounds Write vulnerability in Google Chrome
Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.162 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8
2020-06-03 CVE-2020-6419 Out-of-bounds Write vulnerability in Google Chrome
Out of bounds write in V8 in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
network
low complexity
google CWE-787
8.8