2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0254 | HIGH | 7.5 | 0.5% | Aug 11, 2020 | There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID:... |
| CVE-2020-0251 | HIGH | 7.5 | 0.5% | Aug 11, 2020 | There is a possible out of bounds read due to an incorrect bounds check.Product: AndroidVersions: Android SoCAndroid ID:... |
| CVE-2020-0243 | HIGH | 7.8 | 0.2% | Aug 11, 2020 | In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper locking. This could lead... |
| CVE-2020-0242 | HIGH | 7.8 | 0.2% | Aug 11, 2020 | In reset of NuPlayerDriver.cpp, there is a possible use-after-free due to improper locking. This could lead to local esc... |
| CVE-2020-0241 | HIGH | 7.8 | 0.3% | Aug 11, 2020 | In NuPlayerStreamListener of NuPlayerStreamListener.cpp, there is possible memory corruption due to a double free. This ... |
| CVE-2020-0240 | HIGH | 8.8 | 2.1% | Aug 11, 2020 | In NewFixedDoubleArray of factory.cc, there is a possible out of bounds write due to an integer overflow. This could lea... |
| CVE-2020-0238 | HIGH | 7 | 0.1% | Aug 11, 2020 | In updatePreferenceIntents of AccountTypePreferenceLoader, there is a possible confused deputy attack due to a race cond... |
| CVE-2020-0108 | HIGH | 7.8 | 0.5% | Aug 11, 2020 | In postNotification of ServiceRecord.java, there is a possible bypass of foreground process restrictions due to an uncau... |
| CVE-2020-9404 | HIGH | 7.1 | 0.3% | Aug 11, 2020 | In PACTware before 4.1 SP6 and 5.x before 5.0.5.31, passwords are stored in an insecure manner, and may be modified by a... |
| CVE-2020-8918 | HIGH | 7.1 | 0.2% | Aug 11, 2020 | An improperly initialized 'migrationAuth' value in Google's go-tpm TPM1.2 library versions prior to 0.3.0 can lead an ea... |
| CVE-2020-11976 | HIGH | 7.5 | 3.8% | Aug 11, 2020 | By crafting a special URL it is possible to make Wicket deliver unprocessed HTML templates. This would allow an attacker... |
| CVE-2020-14979 | HIGH | 7.8 | 0.6% | Aug 11, 2020 | The WinRing0.sys and WinRing0x64.sys drivers 1.2.0 in EVGA Precision X1 through 1.0.6 allow local users, including low i... |
| CVE-2020-13177 | HIGH | 7.8 | 0.4% | Aug 11, 2020 | The support bundler in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows versions prior to 20.04.... |
| CVE-2020-13175 | HIGH | 7.5 | 1.7% | Aug 11, 2020 | The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to ... |
| CVE-2020-17448 | HIGH | 7.8 | 2.3% | Aug 11, 2020 | Telegram Desktop through 2.1.13 allows a spoofed file type to bypass the Dangerous File Type Execution protection mechan... |
| CVE-2020-17367 | HIGH | 7.8 | 1.5% | Aug 11, 2020 | Firejail through 0.9.62 does not honor the -- end-of-options indicator after the --output option, which may lead to comm... |
| CVE-2020-13124 | HIGH | 8.8 | 4.6% | Aug 11, 2020 | SABnzbd 2.3.9 and 3.0.0Alpha2 has a command injection vulnerability in the web configuration interface that permits an a... |
| CVE-2020-14296 | HIGH | 7.1 | 0.6% | Aug 11, 2020 | Red Hat CloudForms 4.7 and 5 was vulnerable to Server-Side Request Forgery (SSRF) flaw. With the access to add Ansible T... |
| CVE-2020-10783 | HIGH | 8.3 | 1.0% | Aug 11, 2020 | Red Hat CloudForms 4.7 and 5 is affected by a role-based privilege escalation flaw. An attacker with EVM-Operator group ... |
| CVE-2020-4486 | HIGH | 8.1 | 1.5% | Aug 11, 2020 | IBM QRadar 7.2.0 thorugh 7.2.9 could allow an authenticated user to overwrite or delete arbitrary files due to a flaw af... |
| CVE-2020-9079 | HIGH | 8.8 | 0.4% | Aug 11, 2020 | FusionSphere OpenStack 8.0.0 have a protection mechanism failure vulnerability. The product incorrectly uses a protectio... |
| CVE-2020-16277 | HIGH | 8.8 | 1.2% | Aug 10, 2020 | An SQL injection vulnerability in the Analytics component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, au... |
| CVE-2020-16276 | HIGH | 8.8 | 1.2% | Aug 10, 2020 | An SQL injection vulnerability in the Assets component of SAINT Security Suite 8.0 through 9.8.20 allows a remote, authe... |
| CVE-2020-9078 | HIGH | 7.8 | 0.2% | Aug 10, 2020 | FusionCompute 8.0.0 have local privilege escalation vulnerability. A local, authenticated attacker could perform specifi... |
| CVE-2020-17478 | HIGH | 7.5 | 1.1% | Aug 10, 2020 | ECDSA/EC/Point.pm in Crypt::Perl before 0.33 does not properly consider timing attacks against the EC point multiplicati... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now