2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-10064 | CRITICAL | 9.8 | 0.8% | May 25, 2021 | Improper Input Frame Validation in ieee802154 Processing. Zephyr versions >= v1.14.2, >= v2.2.0 contain Stack-based Buff... |
| CVE-2020-9452 | HIGH | 7.8 | 0.5% | May 25, 2021 | An issue was discovered in Acronis True Image 2020 24.5.22510. anti_ransomware_service.exe includes functionality to qua... |
| CVE-2020-9451 | MEDIUM | 5.5 | 0.4% | May 25, 2021 | An issue was discovered in Acronis True Image 2020 24.5.22510. anti_ransomware_service.exe keeps a log in a folder where... |
| CVE-2020-9450 | HIGH | 7.8 | 0.4% | May 25, 2021 | An issue was discovered in Acronis True Image 2020 24.5.22510. anti_ransomware_service.exe exposes a REST API that can b... |
| CVE-2020-20178 | HIGH | 7.5 | 1.1% | May 24, 2021 | Ethereum 0xe933c0cd9784414d5f278c114904f5a84b396919#code.sol latest version is affected by a denial of service vulnerabi... |
| CVE-2020-26560 | HIGH | 8.1 | 0.9% | May 24, 2021 | Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, reflecting the authe... |
| CVE-2020-26559 | HIGH | 8.8 | 0.9% | May 24, 2021 | Bluetooth Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (participating in the... |
| CVE-2020-26558 | MEDIUM | 4.2 | 0.9% | May 24, 2021 | Bluetooth LE and BR/EDR secure pairing in Bluetooth Core Specification 2.1 through 5.2 may permit a nearby man-in-the-mi... |
| CVE-2020-26557 | HIGH | 7.5 | 0.8% | May 24, 2021 | Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device (without possession of the Auth... |
| CVE-2020-26556 | HIGH | 7.5 | 0.9% | May 24, 2021 | Mesh Provisioning in the Bluetooth Mesh profile 1.0 and 1.0.1 may permit a nearby device, able to conduct a successful b... |
| CVE-2020-26555 | MEDIUM | 5.4 | 0.9% | May 24, 2021 | Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated ... |
| CVE-2020-21041 | HIGH | 7.5 | 2.1% | May 24, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a r... |
| CVE-2020-20907 | CRITICAL | 9.1 | 2.2% | May 24, 2021 | MetInfo 7.0 beta is affected by a file modification vulnerability. Attackers can delete and modify ini files in app/syst... |
| CVE-2020-4990 | HIGH | 8.8 | 1.1% | May 24, 2021 | IBM Security Guardium 11.2 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements... |
| CVE-2020-28911 | MEDIUM | 6.5 | 2.7% | May 24, 2021 | Incorrect Access Control in Nagios Fusion 4.1.8 and earlier allows low-privileged authenticated users to extract passwor... |
| CVE-2020-28910 | CRITICAL | 9.8 | 3.9% | May 24, 2021 | Creation of a Temporary Directory with Insecure Permissions in Nagios XI 5.7.5 and earlier allows for Privilege Escalati... |
| CVE-2020-28909 | HIGH | 8.8 | 5.1% | May 24, 2021 | Incorrect File Permissions in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to root via modification o... |
| CVE-2020-28908 | CRITICAL | 9.8 | 5.7% | May 24, 2021 | Command Injection in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation to nagios. |
| CVE-2020-28907 | CRITICAL | 9.8 | 3.4% | May 24, 2021 | Incorrect SSL certificate validation in Nagios Fusion 4.1.8 and earlier allows for Escalation of Privileges or Code Exec... |
| CVE-2020-28906 | HIGH | 8.8 | 4.7% | May 24, 2021 | Incorrect File Permissions in Nagios XI 5.7.5 and earlier and Nagios Fusion 4.1.8 and earlier allows for Privilege Escal... |
| CVE-2020-28905 | HIGH | 8.8 | 26.2% | May 24, 2021 | Improper Input Validation in Nagios Fusion 4.1.8 and earlier allows an authenticated attacker to execute remote code via... |
| CVE-2020-28904 | CRITICAL | 9.8 | 3.6% | May 24, 2021 | Execution with Unnecessary Privileges in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation as nagios via i... |
| CVE-2020-28903 | MEDIUM | 6.1 | 10.1% | May 24, 2021 | Improper input validation in Nagios Fusion 4.1.8 and earlier allows a remote attacker with control over a fused server t... |
| CVE-2020-28902 | CRITICAL | 9.8 | 6.4% | May 24, 2021 | Command Injection in Nagios Fusion 4.1.8 and earlier allows Privilege Escalation from apache to root in cmd_subsys.php. |
| CVE-2020-28901 | CRITICAL | 9.8 | 9.1% | May 24, 2021 | Command Injection in Nagios Fusion 4.1.8 and earlier allows for Privilege Escalation or Code Execution as root via vecto... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now