2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0590 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially e... |
| CVE-2020-7332 | HIGH | 8.8 | 0.6% | Nov 12, 2020 | Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0... |
| CVE-2020-7331 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local use... |
| CVE-2020-3632 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snap... |
| CVE-2020-11208 | HIGH | 7.8 | 1.7% | Nov 12, 2020 | Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as ... |
| CVE-2020-11207 | HIGH | 7.8 | 1.5% | Nov 12, 2020 | Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snap... |
| CVE-2020-11206 | HIGH | 7.8 | 1.8% | Nov 12, 2020 | Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in... |
| CVE-2020-11205 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in... |
| CVE-2020-11202 | HIGH | 7.8 | 1.5% | Nov 12, 2020 | Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligne... |
| CVE-2020-11201 | HIGH | 7.8 | 1.8% | Nov 12, 2020 | Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Au... |
| CVE-2020-11175 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been d... |
| CVE-2020-11132 | HIGH | 7.1 | 0.2% | Nov 12, 2020 | u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdrag... |
| CVE-2020-11131 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received fro... |
| CVE-2020-11130 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Aut... |
| CVE-2020-11127 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during th... |
| CVE-2020-11121 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in ... |
| CVE-2020-26070 | HIGH | 8.6 | 1.9% | Nov 12, 2020 | A vulnerability in the ingress packet processing function of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation... |
| CVE-2020-2050 | HIGH | 8.2 | 1.0% | Nov 12, 2020 | An authentication bypass vulnerability exists in the GlobalProtect SSL VPN component of Palo Alto Networks PAN-OS softwa... |
| CVE-2020-2022 | HIGH | 7.5 | 1.2% | Nov 12, 2020 | An information exposure vulnerability exists in Palo Alto Networks Panorama software that discloses the token for the Pa... |
| CVE-2020-2000 | HIGH | 7.2 | 3.2% | Nov 12, 2020 | An OS command injection and memory corruption vulnerability in the PAN-OS management web interface that allows authentic... |
| CVE-2020-5992 | HIGH | 7.8 | 0.5% | Nov 11, 2020 | NVIDIA GeForce NOW application software on Windows, all versions prior to 2.0.25.119, contains a vulnerability in its op... |
| CVE-2020-27524 | HIGH | 7.1 | 1.2% | Nov 11, 2020 | On Audi A7 MMI 2014 vehicles, the Bluetooth stack in Audi A7 MMI Multiplayer with version (N+R_CN_AU_P0395) mishandles %... |
| CVE-2020-27523 | HIGH | 7.5 | 2.0% | Nov 11, 2020 | Solstice-Pod up to 5.0.2 WEBRTC server mishandles the format-string specifiers %x; %p; %c and %s in the screen_key, disp... |
| CVE-2020-4685 | HIGH | 7.2 | 1.4% | Nov 11, 2020 | A low level user of IBM Cognos Controller 10.3.0, 10.3.1, 10.4.0, 10.4.1, and 10.4.2 who has Administration rights to th... |
| CVE-2020-7329 | HIGH | 7.2 | 1.6% | Nov 11, 2020 | Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows remote a... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now