Vulnerability index

Browse CVEs

373 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
HIGH 7.2 CVE-2011-4213 The sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly prevent use of the os module, which allows local users to … App Engine Python Sdk 1.5.4+ Fix from $1,9502011-10-30 HIGH 7.2 CVE-2011-4211 The FakeFile implementation in the sandbox environment in the Google App Engine Python SDK before 1.5.4 does not properly control the opening of file… App Engine Python Sdk after 1.5.3 Fix from $1,9502011-10-30 HIGH 7.5 CVE-2011-2862 Google V8, as used in Google Chrome before 14.0.835.163, does not properly restrict access to built-in objects, which has unspecified impact and remo… Chrome 14.0.835.163+ Fix from $1,9502011-09-19 MEDIUM 5.8 CVE-2008-7294 Google Chrome before 4.0.211.0 cannot properly restrict modifications to cookies established in HTTPS sessions, which allows man-in-the-middle attack… Chrome after 3.0.195.38 Fix from $1,6002011-08-09 HIGH 7.2 CVE-2011-2169 Google Chrome OS before R12 0.12.433.38 Beta allows local users to gain privileges by creating a /var/lib/chromeos-aliases.conf file and placing comm… Chrome Os after 0.12.433.35 Fix from $1,9502011-05-24 HIGH 7.2 CVE-2011-1149 Android before 2.3 does not properly restrict access to the system property space, which allows local applications to bypass the application sandbox … Android after 2.2.2 Fix from $1,9502011-04-21 HIGH 7.5 CVE-2011-0778 Google Chrome before 9.0.597.84 does not properly restrict drag and drop operations, which might allow remote attackers to bypass the Same Origin Pol… Chrome after 9.0.597.83 Fix from $1,9502011-02-04 HIGH 9.3 CVE-2010-2296 The implementation of unspecified DOM methods in Google Chrome before 5.0.375.70 allows remote attackers to bypass the Same Origin Policy via unknown… Chrome 5.0.375.70+ Fix from $1,9502010-06-15 HIGH 10.0 CVE-2010-1663EPSS 54% The Google URL Parsing Library (aka google-url or GURL) in Google Chrome before 4.1.249.1064 allows remote attackers to bypass the Same Origin Policy… Chrome after 4.1.249.1063 Fix from $1,9502010-05-03 HIGH 10.0 CVE-2010-1505 Google Chrome before 4.1.249.1059 does not prevent pages from loading with the New Tab page's privileges, which has unknown impact and attack vectors. Chrome after 4.1.249.1058 Fix from $1,9502010-04-23 MEDIUM 6.8 CVE-2010-0661 WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypa… Chrome after 4.0.249.0 Fix from $1,6002010-02-18 HIGH 10.0 CVE-2009-2935EPSS 5% Google V8, as used in Google Chrome before 2.0.172.43, allows remote attackers to bypass intended restrictions on reading memory, and possibly obtain… Chrome after 2.0.172.37 Fix from $1,9502009-08-27 MEDIUM 5.0 CVE-2009-0411 Google Chrome before 1.0.154.46 does not properly restrict access from web pages to the (1) Set-Cookie and (2) Set-Cookie2 HTTP response headers, whi… Chrome after 1.0.154.43 Fix from $1,6002009-02-03