2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3666 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Out of bounds memory access during memory copy while processing Host command' in Snapdragon Auto, Snapdragon Compute, ... |
| CVE-2020-3648 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Possible out of bound write in DSP driver code due to lack of check of data received from user' in Snapdragon Auto, Sn... |
| CVE-2020-3647 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Potential buffer overflow when accessing npu debugfs node "off"/"log" with large buffer size' in Snapdragon Compute, S... |
| CVE-2020-3646 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Buffer overflow seen as the destination buffer size is lesser than the source buffer size in video application' in Sna... |
| CVE-2020-3640 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Resizing the usage table header before passing all the checks leads to the function exiting with a usage table in inva... |
| CVE-2020-3636 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Out of bound writes happen when accessing usage_table header entry beyond the memory allocated for the header' in Snap... |
| CVE-2020-3629 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Stack out of bound issue occurs when making query to DSP capabilities due to wrong assumption was made on determining ... |
| CVE-2020-3624 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'A potential buffer overflow exists due to integer overflow when parsing handler options due to wrong data type usage i... |
| CVE-2020-3622 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Channel name string which has been read from shared memory is potentially subjected to string manipulations but not va... |
| CVE-2020-3619 | HIGH | 7 | 0.2% | Sep 8, 2020 | u'Non-secure memory is touched multiple times during TrustZone\u2019s execution and can lead to privilege escalation or ... |
| CVE-2020-3611 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'XBL SEC clears only ZI region when loading Qualcomm-signed segments can lead to improper access issue' in Snapdragon C... |
| CVE-2020-11158 | HIGH | 7.5 | 0.8% | Sep 8, 2020 | u'Null pointer dereference in HP OfficeJet Pro 8210 jbig2 filter due to lack of check of PDF font array leads to denial ... |
| CVE-2020-11133 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Possible out of bound array write in rxdco cal utility due to lack of array bound check' in Snapdragon Compute, Snapdr... |
| CVE-2020-11128 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Possible out of bound access while copying the mask file content into the buffer without checking the buffer size' in ... |
| CVE-2020-11120 | HIGH | 7.8 | 0.2% | Sep 8, 2020 | u'Calling thread may free the data buffer pointer that was passed to the callback and later when event loop executes the... |
| CVE-2020-11118 | HIGH | 7.5 | 0.7% | Sep 8, 2020 | u'Information exposure issues while processing IE header due to improper check of beacon IE frame' in Snapdragon Auto, S... |
| CVE-2020-11115 | HIGH | 7.5 | 0.7% | Sep 8, 2020 | u'Buffer over read occurs while processing information element from beacon due to lack of check of data received from be... |
| CVE-2020-24986 | HIGH | 7.2 | 2.0% | Sep 4, 2020 | Concrete5 up to and including 8.5.2 allows Unrestricted Upload of File with Dangerous Type such as a .php file via File ... |
| CVE-2020-24659 | HIGH | 7.5 | 3.7% | Sep 4, 2020 | An issue was discovered in GnuTLS before 3.6.15. A server can trigger a NULL pointer dereference in a TLS 1.3 client if ... |
| CVE-2020-14008 | HIGH | 7.2 | 35.5% | Sep 4, 2020 | Zoho ManageEngine Applications Manager 14710 and before allows an authenticated admin user to upload a vulnerable jar in... |
| CVE-2020-4545 | HIGH | 7.8 | 3.0% | Sep 4, 2020 | IBM Aspera Connect 3.9.9 could allow a remote attacker to execute arbitrary code on the system, caused by improper loadi... |
| CVE-2020-23834 | HIGH | 7.8 | 0.5% | Sep 4, 2020 | Insecure Service File Permissions in the bd service in Real Time Logic BarracudaDrive v6.5 allow local attackers to esca... |
| CVE-2020-12248 | HIGH | 8.8 | 1.8% | Sep 4, 2020 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a he... |
| CVE-2020-12247 | HIGH | 7.1 | 3.6% | Sep 4, 2020 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information fr... |
| CVE-2020-11493 | HIGH | 8.1 | 0.9% | Sep 4, 2020 | In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information ab... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now