2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-25605MEDIUM5.9Cleartext transmission of sensitive information in Agora Video SDK prior to 3.1 allows a remote attacker to obtain acces...
CVE-2020-13555HIGH8.8An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCAD...
CVE-2020-13553HIGH8.8An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCAD...
CVE-2020-13552HIGH8.8An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCAD...
CVE-2020-13551HIGH8.8An exploitable local privilege elevation vulnerability exists in the file system permissions of Advantech WebAccess/SCAD...
CVE-2020-13550HIGH7.7A local file inclusion vulnerability exists in the installation functionality of Advantech WebAccess/SCADA 9.0.1. A spec...
CVE-2020-36003HIGH7.5The id parameter in detail.php of Online Book Store v1.0 is vulnerable to union-based blind SQL injection, which leads t...
CVE-2020-36002HIGH7.5Seat-Reservation-System 1.0 has a SQL injection vulnerability in index.php in the id parameter where attackers can obtai...
CVE-2020-35339CRITICAL9.8In 74cms version 5.0.1, there is a remote code execution vulnerability in /Application/Admin/Controller/ConfigController...
CVE-2020-12365MEDIUM5.5Untrusted pointer dereference in some Intel(R) Graphics Drivers before versions 15.33.51.5146, 15.45.32.5145, 15.36.39.5...
CVE-2020-8765MEDIUM6.7Incorrect default permissions in the installer for the Intel(R) RealSense(TM) DCM may allow a privileged user to potenti...
CVE-2020-8701MEDIUM6.7Incorrect default permissions in installer for the Intel(R) SSD Toolbox versions before 2/9/2021 may allow a privileged ...
CVE-2020-8678HIGH7.8Improper access control for Intel(R) Graphics Drivers before version 15.45.33.5164 and 27.20.100.8280 may allow an authe...
CVE-2020-7849HIGH8.8A vulnerability of uPrism.io CURIX(Video conferecing solution) could allow an unauthenticated attacker to execute arbitr...
CVE-2020-7848HIGH8The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. To exploit...
CVE-2020-24505MEDIUM4.4Insufficient input validation in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 7.3 may...
CVE-2020-24504MEDIUM5.5Uncontrolled resource consumption in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allo...
CVE-2020-24503MEDIUM5.5Insufficient access control in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 may allow an a...
CVE-2020-24502MEDIUM5.5Improper input validation in some Intel(R) Ethernet E810 Adapter drivers for Linux before version 1.0.4 and before versi...
CVE-2020-24501MEDIUM6.5Buffer overflow in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow an unauthentica...
CVE-2020-24500MEDIUM4.4Buffer overflow in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow a privileged us...
CVE-2020-24498MEDIUM4.4Buffer overflow in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow a privileged us...
CVE-2020-24497MEDIUM4.4Insufficient Access Control in the firmware for Intel(R) E810 Ethernet Controllers before version 1.4.1.13 may allow a p...
CVE-2020-24496MEDIUM4.4Insufficient input validation in the firmware for Intel(R) 722 Ethernet Controllers before version 1.4.3 may allow a pri...
CVE-2020-24495MEDIUM4.4Insufficient access control in the firmware for the Intel(R) 700-series of Ethernet Controllers before version 7.3 may a...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now