2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6155 | HIGH | 7.8 | 2.6% | Nov 13, 2020 | A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD ... |
| CVE-2020-6150 | HIGH | 7.8 | 1.3% | Nov 13, 2020 | A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software USDC file format SPECS section decompressi... |
| CVE-2020-6149 | HIGH | 7.8 | 1.3% | Nov 13, 2020 | A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f... |
| CVE-2020-6148 | HIGH | 7.8 | 1.3% | Nov 13, 2020 | A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f... |
| CVE-2020-6147 | HIGH | 7.8 | 1.4% | Nov 13, 2020 | A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f... |
| CVE-2020-1847 | HIGH | 7.5 | 0.7% | Nov 13, 2020 | There is a denial of service vulnerability in some Huawei products. There is no protection against the attack scenario o... |
| CVE-2020-15783 | HIGH | 7.5 | 1.6% | Nov 12, 2020 | A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All ver... |
| CVE-2020-12927 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | A potential vulnerability in a dynamically loaded AMD driver in AMD VBIOS Flash Tool SDK may allow any authenticated use... |
| CVE-2020-27386 | HIGH | 8.8 | 72.9% | Nov 12, 2020 | An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allows an authenticated remote attacker to upload and e... |
| CVE-2020-27385 | HIGH | 8.1 | 1.7% | Nov 12, 2020 | Incorrect Access Control in the FileEditor (/Admin/Views/FileEditor/) in FlexDotnetCMS before v1.5.11 allows an authenti... |
| CVE-2020-26805 | HIGH | 7.2 | 1.5% | Nov 12, 2020 | In Sentrifugo 3.2, admin can edit employee's informations via this endpoint --> /sentrifugo/index.php/empadditionaldetai... |
| CVE-2020-26804 | HIGH | 8.8 | 1.4% | Nov 12, 2020 | In Sentrifugo 3.2, users can share an announcement under "Organization -> Announcements" tab. Also, in this page, users ... |
| CVE-2020-26803 | HIGH | 8.8 | 1.4% | Nov 12, 2020 | In Sentrifugo 3.2, users can upload an image under "Assets -> Add" tab. This "Upload Images" functionality is suffered f... |
| CVE-2020-24525 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Insecure inherited permissions in firmware update tool for some Intel(R) NUCs may allow an authenticated user to potenti... |
| CVE-2020-24456 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Incorrect default permissions in the Intel(R) Board ID Tool version v.1.01 may allow an authenticated user to potentiall... |
| CVE-2020-24454 | HIGH | 7.5 | 1.2% | Nov 12, 2020 | Improper Restriction of XML External Entity Reference in subsystem forIntel(R) Quartus(R) Prime Pro Edition before versi... |
| CVE-2020-16273 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | In Arm software implementing the Armv8-M processors (all versions), the stack selection mechanism could be influenced by... |
| CVE-2020-12350 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper access control in the Intel(R) XTU before version 6.5.1.360 may allow an authenticated user to potentially enab... |
| CVE-2020-12347 | HIGH | 8.8 | 1.3% | Nov 12, 2020 | Improper input validation in the Intel(R) Data Center Manager Console before version 3.6.2 may allow an authenticated us... |
| CVE-2020-12346 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper permissions in the installer for the Intel(R) Battery Life Diagnostic Tool before version 1.0.7 may allow an au... |
| CVE-2020-12345 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper permissions in the installer for the Intel(R) Data Center Manager Console before version 3.6.2 may allow an aut... |
| CVE-2020-12336 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Insecure default variable initialization in firmware for some Intel(R) NUCs may allow an authenticated user to potential... |
| CVE-2020-12335 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper permissions in the installer for the Intel(R) Processor Identification Utility before version 6.4.0603 may allo... |
| CVE-2020-12334 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper permissions in the installer for the Intel(R) Advisor tools before version 2020 Update 2 may allow an authentic... |
| CVE-2020-12333 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Insufficiently protected credentials in the Intel(R) QAT for Linux before version 1.7.l.4.10.0 may allow an authenticate... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now