2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-0266HIGH7.8In factory reset protection, there is a possible FRP bypass due to a missing permission check. This could lead to local ...
CVE-2020-0264HIGH8.8In libstagefright, there is a possible out of bounds write due to an integer overflow. This could lead to remote code ex...
CVE-2020-0130HIGH7.8In screencap, there is a possible command injection due to improper input validation. This could lead to local escalatio...
CVE-2020-24750HIGH8.1FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, rela...
CVE-2020-0434HIGH7.8In Pixel's use of the Catpipe library, there is possible memory corruption due to a use after free. This could lead to l...
CVE-2020-0433HIGH7.8In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use after free due to improper locking. This could le...
CVE-2020-0432HIGH7.8In skb_to_mamac of networking.c, there is a possible out of bounds write due to an integer overflow. This could lead to ...
CVE-2020-0430HIGH7.8In skb_headlen of /include/linux/skbuff.h, there is a possible out of bounds read due to memory corruption. This could l...
CVE-2020-0387HIGH7.8In manifest files of the SmartSpace package, there is a possible tapjacking vector due to a missing permission check. Th...
CVE-2020-25728HIGH8.8The Reset Password add-on before 1.2.0 for Alfresco has a broken algorithm (involving an increment) that allows a malici...
CVE-2020-25727HIGH7.5The Reset Password add-on before 1.2.0 for Alfresco suffers from CMIS-SQL Injection, which allows a malicious user to in...
CVE-2020-25490HIGH7.3Lack of cryptographic signature verification in the Sqreen PHP agent daemon before 1.16.0 makes it easier for remote att...
CVE-2020-24046HIGH7.2A sandbox escape issue was discovered in TitanHQ SpamTitan Gateway 7.07. It limits the admin user to a restricted shell,...
CVE-2020-24045HIGH7.2A sandbox escape issue was discovered in TitanHQ SpamTitan Gateway 7.07. It limits the admin user to a restricted shell,...
CVE-2020-11804HIGH8.8An issue was discovered in Titan SpamTitan 7.07. Due to improper sanitization of the parameter quid, used in the page ma...
CVE-2020-11803HIGH8.8An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter jaction when interacting with th...
CVE-2020-11699HIGH8.8An issue was discovered in Titan SpamTitan 7.07. Improper validation of the parameter fname on the page certs-x.php woul...
CVE-2020-0401HIGH7.8In setInstallerPackageName of PackageManagerService.java, there is a missing permission check. This could lead to local ...
CVE-2020-0394HIGH7.8In onCreate of BluetoothPairingDialog.java, there is a possible tapjacking vector due to an insecure default value. This...
CVE-2020-0392HIGH7.8In getLayerDebugInfo of SurfaceFlinger.cpp, there is a possible code execution due to a double free. This could lead to ...
CVE-2020-0391HIGH7.8In applyPolicy of PackageManagerService.java, there is possible arbitrary command execution as System due to an unenforc...
CVE-2020-0388HIGH7.8In createEmergencyLocationUserNotification of GnssVisibilityControl.java, there is a possible permissions bypass due to ...
CVE-2020-0381HIGH7.5In Parse_wave of eas_mdls.c, there is a possible out of bounds write due to an integer overflow. This could lead to remo...
CVE-2020-0245HIGH8.8In DecodeFrameCombinedMode of combined_decode.cpp, there is a possible out of bounds write due to a heap buffer overflow...
CVE-2020-0074HIGH7.8In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now