2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-28045 | HIGH | 7.8 | 0.4% | Nov 2, 2020 | An unsigned-library issue was discovered in ProlinOS through 2.4.161.8859R. This OS requires installed applications and ... |
| CVE-2020-28043 | HIGH | 7.5 | 1.3% | Nov 2, 2020 | MISP through 2.4.133 allows SSRF in the REST client via the use_full_path parameter with an arbitrary URL. |
| CVE-2020-28033 | HIGH | 7.5 | 2.6% | Nov 2, 2020 | WordPress before 5.5.2 mishandles embeds from disabled sites on a multisite network, as demonstrated by allowing a spam ... |
| CVE-2020-28030 | HIGH | 7.5 | 2.0% | Nov 2, 2020 | In Wireshark 3.2.0 to 3.2.7, the GQUIC dissector could crash. This was addressed in epan/dissectors/packet-gquic.c by co... |
| CVE-2020-27992 | HIGH | 7.8 | 0.4% | Nov 2, 2020 | Dr.Fone 3.0.0 allows local users to gain privileges via a Trojan horse DriverInstall.exe because %PROGRAMFILES(X86)%\Won... |
| CVE-2020-27708 | HIGH | 7.8 | 0.6% | Nov 2, 2020 | A vulnerability exists in the Origin Client that could allow a non-Administrative user to elevate their access to either... |
| CVE-2020-14425 | HIGH | 7.8 | 39.4% | Nov 2, 2020 | Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can exe... |
| CVE-2020-10937 | HIGH | 7.5 | 1.1% | Nov 2, 2020 | An issue was discovered in IPFS (aka go-ipfs) 0.4.23. An attacker can generate ephemeral identities (Sybils) and leverag... |
| CVE-2020-3704 | HIGH | 7.5 | 0.5% | Nov 2, 2020 | u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device ma... |
| CVE-2020-3696 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Use after free while installing new security rule in ipcrtr as old one is deleted and this rule could still be in use ... |
| CVE-2020-3694 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom' in Snapd... |
| CVE-2020-3693 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snap... |
| CVE-2020-3690 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdrag... |
| CVE-2020-3684 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader ... |
| CVE-2020-3678 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'A buffer overflow could occur if the API is improperly used due to UIE init does not contain a buffer size a param' in... |
| CVE-2020-3638 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'An Unaligned address or size can propagate to the database due to improper page permissions and can lead to improper a... |
| CVE-2020-11174 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdra... |
| CVE-2020-11173 | HIGH | 7 | 0.1% | Nov 2, 2020 | u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, S... |
| CVE-2020-11164 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Third-party app may also call the broadcasts in Perfdump and cause privilege escalation issue due to improper access c... |
| CVE-2020-11162 | HIGH | 7.8 | 0.2% | Nov 2, 2020 | u'Possible buffer overflow in MHI driver due to lack of input parameter validation of EOT events received from MHI devic... |
| CVE-2020-11157 | HIGH | 7.5 | 0.4% | Nov 2, 2020 | u'Lack of handling unexpected control messages while encryption was in progress can terminate the connection and thus le... |
| CVE-2020-11156 | HIGH | 8.1 | 0.4% | Nov 2, 2020 | u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer ... |
| CVE-2020-11155 | HIGH | 8.8 | 0.5% | Nov 2, 2020 | u'Buffer overflow while processing PDU packet in bluetooth due to lack of check of buffer length before copying into it.... |
| CVE-2020-11154 | HIGH | 8.8 | 0.5% | Nov 2, 2020 | u'Buffer overflow while processing a crafted PDU data packet in bluetooth due to lack of check of buffer size before cop... |
| CVE-2020-11141 | HIGH | 8.1 | 0.3% | Nov 2, 2020 | u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap configuration request rece... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now