2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-14106 | MEDIUM | 5.5 | 0.7% | Apr 8, 2021 | The application in the mobile phone can unauthorized access to the list of running processes in the mobile phone, Xiaomi... |
| CVE-2020-14103 | MEDIUM | 5.5 | 0.7% | Apr 8, 2021 | The application in the mobile phone can read the SNO information of the device, Xiaomi 10 MIUI < 2020.01.15. |
| CVE-2020-14104 | HIGH | 8.1 | 0.7% | Apr 8, 2021 | A RACE CONDITION on XQBACKUP causes a decompression path error on Xiaomi router AX3600 with ROM version =1.0.50. |
| CVE-2020-14099 | HIGH | 7.5 | 0.6% | Apr 8, 2021 | On Xiaomi router AX1800 rom version < 1.0.336 and RM1800 root version < 1.0.26, the encryption scheme for a user's backu... |
| CVE-2020-23539 | HIGH | 7.5 | 1.8% | Apr 8, 2021 | An issue was discovered in Realtek rtl8723de BLE Stack <= 4.1 that allows remote attackers to cause a Denial of Service ... |
| CVE-2020-8630 | — | — | — | Apr 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2020-8629 | — | — | — | Apr 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2020-8628 | — | — | — | Apr 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2020-8627 | — | — | — | Apr 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2020-8626 | — | — | — | Apr 8, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not as... |
| CVE-2020-23426 | CRITICAL | 9.8 | 3.7% | Apr 8, 2021 | zzcms 201910 contains an access control vulnerability through escalation of privileges in /user/adv.php, which allows an... |
| CVE-2020-36316 | MEDIUM | 5.5 | 1.2% | Apr 7, 2021 | In RELIC before 2021-04-03, there is a buffer overflow in PKCS#1 v1.5 signature verification because garbage bytes can b... |
| CVE-2020-36315 | MEDIUM | 5.3 | 0.9% | Apr 7, 2021 | In RELIC before 2020-08-01, RSA PKCS#1 v1.5 signature forgery can occur because certain checks of the padding (and of th... |
| CVE-2020-24140 | HIGH | 8.3 | 1.2% | Apr 7, 2021 | Server-side request forgery in Wcms 0.3.2 let an attacker send crafted requests from the back-end server of a vulnerable... |
| CVE-2020-24139 | HIGH | 8.3 | 1.1% | Apr 7, 2021 | Server-side request forgery in Wcms 0.3.2 lets an attacker send crafted requests from the back-end server of a vulnerabl... |
| CVE-2020-24137 | MEDIUM | 5.3 | 1.4% | Apr 7, 2021 | Directory traversal vulnerability in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running... |
| CVE-2020-24135 | MEDIUM | 6.1 | 0.9% | Apr 7, 2021 | A Reflected Cross Site Scripting (XSS) Vulnerability was discovered in Wcms 0.3.2, which allows remote attackers to inje... |
| CVE-2020-25584 | HIGH | 7.5 | 0.2% | Apr 7, 2021 | In FreeBSD 13.0-STABLE before n245118, 12.2-STABLE before r369552, 11.4-STABLE before r369560, 13.0-RC5 before p1, 12.2-... |
| CVE-2020-24138 | MEDIUM | 6.1 | 0.9% | Apr 7, 2021 | Cross Site Scripting (XSS) vulnerability in wcms 0.3.2 allows remote attackers to inject arbitrary web script and HTML v... |
| CVE-2020-24136 | HIGH | 8.6 | 2.2% | Apr 7, 2021 | Directory traversal in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an applicatio... |
| CVE-2020-36314 | LOW | 3.9 | 0.6% | Apr 7, 2021 | fr-archive-libarchive.c in GNOME file-roller through 3.38.0, as used by GNOME Shell and other software, allows Directory... |
| CVE-2020-11255 | HIGH | 7.5 | 0.7% | Apr 7, 2021 | Denial of service while processing RTCP packets containing multiple SDES reports due to memory for last SDES packet is f... |
| CVE-2020-11252 | MEDIUM | 5.5 | 0.2% | Apr 7, 2021 | Trustzone initialization code will disable xPU`s when memory dumps are enabled and lead to information disclosure in Sna... |
| CVE-2020-11251 | CRITICAL | 9.1 | 0.9% | Apr 7, 2021 | Out-of-bounds read vulnerability while accessing DTMF payload due to lack of check of buffer length before copying in Sn... |
| CVE-2020-11247 | CRITICAL | 9.1 | 0.9% | Apr 7, 2021 | Out of bound memory read while unpacking data due to lack of offset length check in Snapdragon Auto, Snapdragon Compute,... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now