2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-28045HIGH7.8An unsigned-library issue was discovered in ProlinOS through 2.4.161.8859R. This OS requires installed applications and ...
CVE-2020-28043HIGH7.5MISP through 2.4.133 allows SSRF in the REST client via the use_full_path parameter with an arbitrary URL.
CVE-2020-28033HIGH7.5WordPress before 5.5.2 mishandles embeds from disabled sites on a multisite network, as demonstrated by allowing a spam ...
CVE-2020-28030HIGH7.5In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by co...
CVE-2020-27992HIGH7.8Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because %PROGRAMFILES(X86)%\Won...
CVE-2020-27708HIGH7.8A vulnerability exists in the Origin Client that could allow a non-Administrative user to elevate their access to either...
CVE-2020-14425HIGH7.8Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can exe...
CVE-2020-10937HIGH7.5An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverag...
CVE-2020-3704HIGH7.5u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device ma...
CVE-2020-3696HIGH7.8u'Use after free while installing new security rule in ipcrtr as old one is deleted and this rule could still be in use ...
CVE-2020-3694HIGH7.8u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom' in Snapd...
CVE-2020-3693HIGH7.8u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snap...
CVE-2020-3690HIGH7.8u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdrag...
CVE-2020-3684HIGH7.8u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader ...
CVE-2020-3678HIGH7.8u'A buffer overflow could occur if the API is improperly used due to UIE init does not contain a buffer size a param' in...
CVE-2020-3638HIGH7.8u'An Unaligned address or size can propagate to the database due to improper page permissions and can lead to improper a...
CVE-2020-11174HIGH7.8u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdra...
CVE-2020-11173HIGH7u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, S...
CVE-2020-11164HIGH7.8u'Third-party app may also call the broadcasts in Perfdump and cause privilege escalation issue due to improper access c...
CVE-2020-11162HIGH7.8u'Possible buffer overflow in MHI driver due to lack of input parameter validation of EOT events received from MHI devic...
CVE-2020-11157HIGH7.5u'Lack of handling unexpected control messages while encryption was in progress can terminate the connection and thus le...
CVE-2020-11156HIGH8.1u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer ...
CVE-2020-11155HIGH8.8u'Buffer overflow while processing PDU packet in bluetooth due to lack of check of buffer length before copying into it....
CVE-2020-11154HIGH8.8u'Buffer overflow while processing a crafted PDU data packet in bluetooth due to lack of check of buffer size before cop...
CVE-2020-11141HIGH8.1u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap configuration request rece...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now