2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0266 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In factory reset protection, there is a possible FRP bypass due to a missing permission check. This could lead to local ... |
| CVE-2020-0264 | HIGH | 8.8 | 0.7% | Sep 17, 2020 | In libstagefright, there is a possible out of bounds write due to an integer overflow. This could lead to remote code ex... |
| CVE-2020-0130 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In screencap, there is a possible command injection due to improper input validation. This could lead to local escalatio... |
| CVE-2020-24750 | HIGH | 8.1 | 7.3% | Sep 17, 2020 | FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-0434 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. This could lead to l... |
| CVE-2020-0433 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could le... |
| CVE-2020-0432 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow. This could lead to ... |
| CVE-2020-0430 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In skb_headlen of /include/linux/skbuff.h, there is a possible out of bounds read due to memory corruption. This could l... |
| CVE-2020-0387 | HIGH | 7.8 | 0.5% | Sep 17, 2020 | In manifest files of the SmartSpace package, there is a possible tapjacking vector due to a missing permission check. Th... |
| CVE-2020-25728 | HIGH | 8.8 | 1.0% | Sep 17, 2020 | The Reset Password add-on before 1.2.0 for Alfresco has a broken algorithm (involving an increment) that allows a malici... |
| CVE-2020-25727 | HIGH | 7.5 | 0.9% | Sep 17, 2020 | The Reset Password add-on before 1.2.0 for Alfresco suffers from CMIS-SQL Injection, which allows a malicious user to in... |
| CVE-2020-25490 | HIGH | 7.3 | 1.2% | Sep 17, 2020 | Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote att... |
| CVE-2020-24046 | HIGH | 7.2 | 3.4% | Sep 17, 2020 | A sandbox escape issue was discovered in TitanHQ SpamTitan Gateway 7.07. It limits the admin user to a restricted shell,... |
| CVE-2020-24045 | HIGH | 7.2 | 1.6% | Sep 17, 2020 | A sandbox escape issue was discovered in TitanHQ SpamTitan Gateway 7.07. It limits the admin user to a restricted shell,... |
| CVE-2020-11804 | HIGH | 8.8 | 7.1% | Sep 17, 2020 | An issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page ma... |
| CVE-2020-11803 | HIGH | 8.8 | 7.5% | Sep 17, 2020 | An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter jaction when interacting with th... |
| CVE-2020-11699 | HIGH | 8.8 | 9.6% | Sep 17, 2020 | An issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php woul... |
| CVE-2020-0401 | HIGH | 7.8 | 0.3% | Sep 17, 2020 | In setInstallerPackageName of PackageManagerService.java, there is a missing permission check. This could lead to local ... |
| CVE-2020-0394 | HIGH | 7.8 | 0.3% | Sep 17, 2020 | In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure default value. This... |
| CVE-2020-0392 | HIGH | 7.8 | 0.3% | Sep 17, 2020 | In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to ... |
| CVE-2020-0391 | HIGH | 7.8 | 0.4% | Sep 17, 2020 | In applyPolicy of PackageManagerService.java, there is possible arbitrary command execution as System due to an unenforc... |
| CVE-2020-0388 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In createEmergencyLocationUserNotification of GnssVisibilityControl.java, there is a possible permissions bypass due to ... |
| CVE-2020-0381 | HIGH | 7.5 | 1.5% | Sep 17, 2020 | In Parse_wave of eas_mdls.c, there is a possible out of bounds write due to an integer overflow. This could lead to remo... |
| CVE-2020-0245 | HIGH | 8.8 | 2.1% | Sep 17, 2020 | In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible out of bounds write due to a heap buffer overflow... |
| CVE-2020-0074 | HIGH | 7.8 | 0.2% | Sep 17, 2020 | In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now