2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-24349MEDIUM5.5njs through 0.4.3, used in NGINX, allows control-flow hijack in njs_value_property in njs_value.c. NOTE: the vendor cons...
CVE-2020-24348MEDIUM5.5njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_json_stringify_iterator in njs_json.c.
CVE-2020-24347MEDIUM5.5njs through 0.4.3, used in NGINX, has an out-of-bounds read in njs_lvlhsh_level_find in njs_lvlhsh.c.
CVE-2020-24332MEDIUM5.5An issue was discovered in TrouSerS through 0.3.14. If the tcsd daemon is started with root privileges, the creation of ...
CVE-2020-17498MEDIUM6.5In Wireshark 3.2.0 to 3.2.5, the Kafka protocol dissector could crash. This was addressed in epan/dissectors/packet-kafk...
CVE-2020-14483MEDIUM4.3A timeout during a TLS handshake can result in the connection failing to terminate. This can result in a Niagara thread ...
CVE-2020-13286MEDIUM4.3For GitLab before 13.0.12, 13.1.6, 13.2.3 user controlled git configuration settings can be modified to result in Server...
CVE-2020-13281MEDIUM6.5For GitLab before 13.0.12, 13.1.6, 13.2.3 a denial of service exists in the project import feature
CVE-2020-11733MEDIUM6.7An issue was discovered on Spirent TestCenter and Avalanche appliance admin interface firmware. An attacker, who already...
CVE-2020-13285MEDIUM5.4For GitLab before 13.0.12, 13.1.6, 13.2.3 a cross-site scripting (XSS) vulnerability exists in the issue reference numbe...
CVE-2020-13283MEDIUM5.4For GitLab before 13.0.12, 13.1.6, 13.2.3 a cross-site scripting vulnerability exists in the issues list via milestone t...
CVE-2020-13280MEDIUM6.5For GitLab before 13.0.12, 13.1.6, 13.2.3 a memory exhaustion flaw exists due to excessive logging of an invite email er...
CVE-2020-8720MEDIUM5.5Buffer overflow in a subsystem for some Intel(R) Server Boards, Server Systems and Compute Modules before version 1.59 m...
CVE-2020-8689MEDIUM6.5Improper buffer restrictions in the Intel(R) Wireless for Open Source before version 1.5 may allow an unauthenticated us...
CVE-2020-8685MEDIUM4.4Improper authentication in subsystem for Intel (R) LED Manager for NUC before version 1.2.3 may allow privileged user to...
CVE-2020-8684MEDIUM6.7Improper access control in firmware for Intel(R) PAC with Arria(R) 10 GX FPGA before Intel Acceleration Stack version 1....
CVE-2020-8683MEDIUM5.5Improper buffer restrictions in system driver for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow ...
CVE-2020-8682MEDIUM5.5Out of bounds read in system driver for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow an authent...
CVE-2020-8679MEDIUM5.5Out-of-bounds write in Kernel Mode Driver for some Intel(R) Graphics Drivers before version 26.20.100.7755 may allow an ...
CVE-2020-7307MEDIUM5.2Unprotected Storage of Credentials vulnerability in McAfee Data Loss Prevention (DLP) for Mac prior to 11.5.2 allows loc...
CVE-2020-0553MEDIUM4.4Out-of-bounds read in kernel mode driver for some Intel(R) Wireless Bluetooth(R) products on Windows* 10, may allow a pr...
CVE-2020-0512MEDIUM5.5Uncaught exception in the system driver for some Intel(R) Graphics Drivers before version 15.33.50.5129 may allow an aut...
CVE-2020-8759MEDIUM6.7Improper access control in the installer for Intel(R) SSD DCT versions before 3.0.23 may allow a privileged user to pote...
CVE-2020-8742MEDIUM6.7Improper input validation in the firmware for Intel(R) NUCs may allow a privileged user to potentially enable escalation...
CVE-2020-8733MEDIUM6.7Improper buffer restrictions in the firmware for Intel(R) Server Board M10JNP2SB before version 7.210 may allow a privil...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now