Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2019-9850

около 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2019-9850

около 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2019-9850

около 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-9850

около 7 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-vq62-85wx-mmv3

больше 4 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2019-03147

около 7 лет назад

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2057-1

около 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2231-1

около 7 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1598

больше 6 лет назад

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2183-1

почти 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2402-1

около 7 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2401-1

около 7 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1151

больше 6 лет назад

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
около 7 лет назад
redhat логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
3%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
около 7 лет назад
debian логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
3%
Низкий
около 7 лет назад
github логотип
GHSA-vq62-85wx-mmv3

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
fstec логотип
BDU:2019-03147

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
3%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2057-1

Security update for libreoffice

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2231-1

Security update for libreoffice

около 7 лет назад
oracle-oval логотип
ELSA-2020-1598

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2183-1

Security update for libreoffice

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2402-1

Security update for libreoffice

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:2401-1

Security update for libreoffice

около 7 лет назад
oracle-oval логотип
ELSA-2020-1151

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

больше 6 лет назад

Уязвимостей на страницу