2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-15385MEDIUM5.4Brocade SANnav before version 2.1.1 allows an authenticated attacker to list directories, and list files without permiss...
CVE-2020-15384MEDIUM5.3Brocade SANNav before version 2.1.1 contains an information disclosure vulnerability. Successful exploitation of interna...
CVE-2020-15380HIGH7.5Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.
CVE-2020-15379HIGH7.5Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper ...
CVE-2020-15378MEDIUM5.3The OVA version of Brocade SANnav before version 2.1.1 installation with IPv6 networking exposes the docker container po...
CVE-2020-15377CRITICAL9.8Webtools in Brocade SANnav before version 2.1.1 allows unauthenticated users to make requests to arbitrary hosts due to ...
CVE-2020-27384HIGH7.8The Gw2-64.exe in Guild Wars 2 launcher version 106916 suffers from an elevation of privileges vulnerability which can b...
CVE-2020-15383HIGH7.5Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocad...
CVE-2020-15382HIGH7.2Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a passw...
CVE-2020-15381HIGH7.5Brocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission...
CVE-2020-11306HIGH7.8Possible integer overflow in RPMB counter due to lack of length check on user provided data in Snapdragon Auto, Snapdrag...
CVE-2020-11304HIGH7.1Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdrago...
CVE-2020-11298HIGH7While waiting for a response to a callback or listener request, non-secure clients can change permissions to shared memo...
CVE-2020-11292HIGH7.8Possible buffer overflow in voice service due to lack of input validation of parameters in QMI Voice API in Snapdragon A...
CVE-2020-11291CRITICAL9.8Possible buffer overflow while updating ikev2 parameters for delete payloads received during informational exchange due ...
CVE-2020-11267HIGH7.8Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value ...
CVE-2020-11176CRITICAL9.8While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause...
CVE-2020-11266MEDIUM6.5Image address is dereferenced before validating its range which can cause potential QSEE information leakage in Snapdrag...
CVE-2020-11265MEDIUM5.5Information disclosure issue due to lack of validation of pointer arguments passed to TZ BSP in Snapdragon Wired Infrast...
CVE-2020-11262HIGH7A race between command submission and destroying the context can cause an invalid context being added to the list leads ...
CVE-2020-11261HIGH7.8Memory corruption due to improper check to return error when user application requests memory allocation of a huge size ...
CVE-2020-11260HIGH8.4An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Sn...
CVE-2020-11259HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct...
CVE-2020-11258HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct...
CVE-2020-11257HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastruct...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now