2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-21224 | CRITICAL | 9.8 | 38.7% | Feb 22, 2021 | A Remote Code Execution vulnerability has been found in Inspur ClusterEngine V4.0. A remote attacker can send a maliciou... |
| CVE-2020-19762 | MEDIUM | 6.1 | 1.0% | Feb 22, 2021 | Automated Logic Corporation (ALC) WebCTRL System 6.5 and prior allows remote attackers to execute any JavaScript code vi... |
| CVE-2020-3664 | MEDIUM | 6 | 0.2% | Feb 22, 2021 | Out of bound read access in hypervisor due to an invalid read access attempt by passing invalid addresses in Snapdragon ... |
| CVE-2020-11297 | HIGH | 7.5 | 0.6% | Feb 22, 2021 | Denial of service in WLAN module due to improper check of subtypes in logic where excessive frames are dropped in Snapdr... |
| CVE-2020-11296 | HIGH | 7.5 | 0.6% | Feb 22, 2021 | Arithmetic overflow can happen while processing NOA IE due to improper error handling in Snapdragon Auto, Snapdragon Com... |
| CVE-2020-11287 | HIGH | 7.5 | 0.7% | Feb 22, 2021 | Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to informati... |
| CVE-2020-11286 | MEDIUM | 6.8 | 0.2% | Feb 22, 2021 | An Untrusted Pointer Dereference can occur while doing USB control transfers, if multiple requests of different standard... |
| CVE-2020-11283 | CRITICAL | 9.8 | 0.7% | Feb 22, 2021 | A buffer overflow can occur when playing an MKV clip due to lack of input validation in Snapdragon Auto, Snapdragon Comp... |
| CVE-2020-11282 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Improper access control when using mmap with the kgsl driver with a special offset value that can be provided to map the... |
| CVE-2020-11281 | HIGH | 7.5 | 0.7% | Feb 22, 2021 | Allowing RTT frames to be linked with non randomized MAC address by comparing the sequence numbers can lead to informati... |
| CVE-2020-11280 | HIGH | 7.5 | 0.6% | Feb 22, 2021 | Denial of service while processing fine timing measurement request (FTMR) frame with reserved bits set in the FTM parame... |
| CVE-2020-11278 | HIGH | 7.5 | 0.6% | Feb 22, 2021 | Possible denial of service while handling host WMI command due to improper validation in Snapdragon Auto, Snapdragon Com... |
| CVE-2020-11277 | HIGH | 7.4 | 0.1% | Feb 22, 2021 | Possible race condition during async fastrpc session after sending RPC message due to the fastrpc ctx gets free during a... |
| CVE-2020-11276 | CRITICAL | 9.1 | 0.8% | Feb 22, 2021 | Possible buffer over read while processing P2P IE and NOA attribute of beacon and probe response frames due to improper ... |
| CVE-2020-11275 | CRITICAL | 9.1 | 0.8% | Feb 22, 2021 | Possible buffer over-read while parsing quiet IE in Rx beacon frame due to improper check of IE length in received beaco... |
| CVE-2020-11272 | CRITICAL | 9.8 | 0.8% | Feb 22, 2021 | Before enqueuing a frame to the PE queue for further processing, an entry in a hash table can be deleted and using a sta... |
| CVE-2020-11271 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Possible out of bounds while accessing global control elements due to race condition in Snapdragon Auto, Snapdragon Comp... |
| CVE-2020-11270 | HIGH | 7.5 | 0.6% | Feb 22, 2021 | Possible denial of service due to RTT responder consistently rejects all FTMR by transmitting FTM1 with failure status i... |
| CVE-2020-11269 | HIGH | 8.8 | 0.3% | Feb 22, 2021 | Possible memory corruption while processing EAPOL frames due to lack of validation of key length before using it in Snap... |
| CVE-2020-11253 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Arbitrary memory write issue in video driver while setting the internal buffers in Snapdragon Auto, Snapdragon Compute, ... |
| CVE-2020-11223 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Out of bound in camera driver due to lack of check of validation of array index before copying into array in Snapdragon ... |
| CVE-2020-11204 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Possible memory corruption and information leakage in sub-system due to lack of check for validity and boundary complian... |
| CVE-2020-11203 | HIGH | 7.1 | 0.1% | Feb 22, 2021 | Stack overflow may occur if GSM/WCDMA broadcast config size received from user is larger than variable length array in S... |
| CVE-2020-11198 | MEDIUM | 6.7 | 0.1% | Feb 22, 2021 | Key material used for TZ diag buffer encryption and other data related to log buffer is not wiped securely due to improp... |
| CVE-2020-11195 | HIGH | 7.8 | 0.2% | Feb 22, 2021 | Out of bound write and read in TA while processing command from NS side due to improper length check on command and resp... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now