2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-15581MEDIUM5.3An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The kernel logging feature ...
CVE-2020-15580MEDIUM5.5An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factor...
CVE-2020-15578MEDIUM5.5An issue was discovered on Samsung mobile devices with O(8.x) software. FactoryCamera does not properly restrict runtime...
CVE-2020-15577MEDIUM5.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Cameralyzer allows attackers to writ...
CVE-2020-15575MEDIUM6.1SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194.
CVE-2020-15573MEDIUM6.1SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421.
CVE-2020-15525MEDIUM5.3GitLab EE 11.3 through 13.1.2 has Incorrect Access Control because of the Maven package upload endpoint.
CVE-2020-15517MEDIUM5.4The ke_search (aka Faceted Search) extension through 2.8.2, and 3.x through 3.1.3, for TYPO3 allows XSS.
CVE-2020-15516MEDIUM5.4The mm_forum extension through 1.9.5 for TYPO3 allows XSS that can be exploited via CSRF.
CVE-2020-15514MEDIUM5.4The jh_captcha extension through 2.1.3, and 3.x through 3.0.2, for TYPO3 allows XSS.
CVE-2020-15513MEDIUM5.3The typo3_forum extension before 1.2.1 for TYPO3 has Incorrect Access Control.
CVE-2020-15509MEDIUM6.5Nordic Semiconductor Android BLE Library through 2.2.1 and DFU Library through 1.10.4 for Android (as used by nRF Connec...
CVE-2020-15392MEDIUM5.3A user enumeration vulnerability flaw was found in Venki Supravizio BPM 10.1.2. This issue occurs during password recove...
CVE-2020-10730MEDIUM6.5A NULL pointer dereference, or possible use-after-free flaw was found in Samba AD LDAP server in versions before 4.10.17...
CVE-2020-15566MEDIUM6.5An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a host OS crash because of incorrect err...
CVE-2020-15564MEDIUM6.5An issue was discovered in Xen through 4.13.x, allowing Arm guest OS users to cause a hypervisor crash because of a miss...
CVE-2020-15563MEDIUM6.5An issue was discovered in Xen through 4.13.x, allowing x86 HVM guest OS users to cause a hypervisor crash. An inverted ...
CVE-2020-15096MEDIUM6.8In Electron before versions 6.1.1, 7.2.4, 8.2.4, and 9.0.0-beta21, there is a context isolation bypass, meaning that cod...
CVE-2020-9226MEDIUM5.5HUAWEI P30 with versions earlier than 10.1.0.135(C00E135R2P11) have an improper signature verification vulnerability. Th...
CVE-2020-1839MEDIUM6.3HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a race condition vulnerability. There is a timing...
CVE-2020-1838MEDIUM5.5HUAWEI Mate 30 Pro with versions earlier than 10.1.0.150(C00E136R5P3) have is an improper authentication vulnerability. ...
CVE-2020-1836MEDIUM5.3HUAWEI P30 with versions earlier than 10.1.0.160(C00E160R2P11) and HUAWEI P30 Pro with versions earlier than 10.1.0.160(...
CVE-2020-10760MEDIUM6.5A use-after-free flaw was found in all samba LDAP server versions before 4.10.17, before 4.11.11, before 4.12.4 used in ...
CVE-2020-5356MEDIUM6.5Dell PowerProtect Data Manager (PPDM) versions prior to 19.4 and Dell PowerProtect X400 versions prior to 3.2 contain an...
CVE-2020-1837MEDIUM5.3ChangXiang 8 Plus with versions earlier than 9.1.0.136(C00E121R1P6T8) have a denial of service vulnerability. The device...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now