Логотип exploitDog
bind:"CVE-2020-12387" OR bind:"CVE-2020-12395" OR bind:"CVE-2020-12392" OR bind:"CVE-2020-6831"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-12387" OR bind:"CVE-2020-12395" OR bind:"CVE-2020-12392" OR bind:"CVE-2020-6831"

Количество 39

Количество 39

nvd логотип

CVE-2020-12395

больше 5 лет назад

Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-12395

больше 5 лет назад

Mozilla developers and community members reported memory safety bugs p ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-v3wf-5473-qgjv

больше 3 лет назад

Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2020-03821

больше 5 лет назад

Уязвимость веб-браузеров Firefox ESR и Firefox и почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2020-12392

больше 5 лет назад

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2020-12392

почти 6 лет назад

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-12392

больше 5 лет назад

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2020-12392

больше 5 лет назад

The 'Copy as cURL' feature of Devtools' network tab did not properly e ...

CVSS3: 5.5
EPSS: Низкий
ubuntu логотип

CVE-2020-6831

больше 5 лет назад

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2020-6831

почти 6 лет назад

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-6831

больше 5 лет назад

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-6831

больше 5 лет назад

A buffer overflow could occur when parsing and validating SCTP chunks ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-f75r-qhf4-x3wr

больше 3 лет назад

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2021-01269

больше 5 лет назад

Уязвимость опции «Копировать как cURL» веб-браузеров Firefox ESR, Firefox, почтового клиента Thunderbird, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-5x26-44w7-97vc

больше 3 лет назад

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

EPSS: Низкий
fstec логотип

BDU:2020-03849

больше 5 лет назад

Уязвимость механизма проверки фрагментов SCTP в WebRTC веб-браузеров Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0917-1

больше 5 лет назад

Security update for opera

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0709-1

больше 5 лет назад

Security update for opera

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:0620-1

больше 5 лет назад

Security update for chromium

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-12395

Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-12395

Mozilla developers and community members reported memory safety bugs p ...

CVSS3: 9.8
1%
Низкий
больше 5 лет назад
github логотип
GHSA-v3wf-5473-qgjv

Mozilla developers and community members reported memory safety bugs present in Firefox 75 and Firefox ESR 68.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-03821

Уязвимость веб-браузеров Firefox ESR и Firefox и почтового клиента Thunderbird, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 9.8
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-12392

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-12392

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 6.1
0%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-12392

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-12392

The 'Copy as cURL' feature of Devtools' network tab did not properly e ...

CVSS3: 5.5
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-6831

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
6%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-6831

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
6%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-6831

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 9.8
6%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-6831

A buffer overflow could occur when parsing and validating SCTP chunks ...

CVSS3: 9.8
6%
Низкий
больше 5 лет назад
github логотип
GHSA-f75r-qhf4-x3wr

The 'Copy as cURL' feature of Devtools' network tab did not properly escape the HTTP POST data of a request, which can be controlled by the website. If a user used the 'Copy as cURL' feature and pasted the command into a terminal, it could have resulted in the disclosure of local files. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-01269

Уязвимость опции «Копировать как cURL» веб-браузеров Firefox ESR, Firefox, почтового клиента Thunderbird, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.3
0%
Низкий
больше 5 лет назад
github логотип
GHSA-5x26-44w7-97vc

A buffer overflow could occur when parsing and validating SCTP chunks in WebRTC. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.8, Firefox < 76, and Thunderbird < 68.8.0.

6%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-03849

Уязвимость механизма проверки фрагментов SCTP в WebRTC веб-браузеров Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 9.8
6%
Низкий
больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0917-1

Security update for opera

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0709-1

Security update for opera

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:0620-1

Security update for chromium

больше 5 лет назад

Уязвимостей на страницу