Логотип exploitDog
bind:CVE-2019-9850
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-9850

Количество 13

Количество 13

ubuntu логотип

CVE-2019-9850

больше 6 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2019-9850

больше 6 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2019-9850

больше 6 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2019-9850

больше 6 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-vq62-85wx-mmv3

больше 3 лет назад

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2019-03147

больше 6 лет назад

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2057-1

больше 6 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2231-1

больше 6 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1598

почти 6 лет назад

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2183-1

больше 6 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2402-1

больше 6 лет назад

Security update for libreoffice

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2401-1

больше 6 лет назад

Security update for libreoffice

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1151

почти 6 лет назад

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 7.8
3%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-9850

LibreOffice is typically bundled with LibreLogo, a programmable turtle ...

CVSS3: 9.8
3%
Низкий
больше 6 лет назад
github логотип
GHSA-vq62-85wx-mmv3

LibreOffice is typically bundled with LibreLogo, a programmable turtle vector graphics script, which can execute arbitrary python commands contained with the document it is launched from. LibreOffice also has a feature where documents can specify that pre-installed scripts can be executed on various document script events such as mouse-over, etc. Protection was added, to address CVE-2019-9848, to block calling LibreLogo from script event handers. However an insufficient url validation vulnerability in LibreOffice allowed malicious to bypass that protection and again trigger calling LibreLogo from script event handlers. This issue affects: Document Foundation LibreOffice versions prior to 6.2.6.

CVSS3: 9.8
3%
Низкий
больше 3 лет назад
fstec логотип
BDU:2019-03147

Уязвимость программного модуля LibreLogo пакета офисных программ LibreOffice, позволяющая нарушителю выполнить произвольный код в целевой системе

CVSS3: 8.8
3%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2057-1

Security update for libreoffice

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2231-1

Security update for libreoffice

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1598

ELSA-2020-1598: libreoffice security and bug fix update (MODERATE)

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2183-1

Security update for libreoffice

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2402-1

Security update for libreoffice

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2401-1

Security update for libreoffice

больше 6 лет назад
oracle-oval логотип
ELSA-2020-1151

ELSA-2020-1151: libreoffice security and bug fix update (MODERATE)

почти 6 лет назад

Уязвимостей на страницу