Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2019-9850

почти 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2019-9850

почти 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2019-9850

почти 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-9850

почти 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-vq62-85wx-mmv3

около 4 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2019-03147

почти 7 лет назад

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2057-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2231-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1598

больше 6 лет назад

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2183-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2402-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2401-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1151

больше 6 лет назад

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
почти 7 лет назад
redhat логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
3%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
3%
Низкий
почти 7 лет назад
github логотип
GHSA-vq62-85wx-mmv3

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
fstec логотип
BDU:2019-03147

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
3%
Низкий
почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2057-1

Security update for libreoffice

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2231-1

Security update for libreoffice

почти 7 лет назад
oracle-oval логотип
ELSA-2020-1598

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2183-1

Security update for libreoffice

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2402-1

Security update for libreoffice

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2401-1

Security update for libreoffice

почти 7 лет назад
oracle-oval логотип
ELSA-2020-1151

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

больше 6 лет назад

Уязвимостей на страницу