2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-0118HIGH7.8In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper input validation. Th...
CVE-2020-0115HIGH7.8In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec...
CVE-2020-0114HIGH7.8In onCreateSliceProvider of KeyguardSliceProvider.java, there is a possible confused deputy due to a PendingIntent error...
CVE-2020-7586HIGH7.8A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions <...
CVE-2020-7585HIGH7.8A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions <...
CVE-2020-7672HIGH8.6mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed b...
CVE-2020-7671HIGH7.5goliath through 1.0.6 allows request smuggling attacks where goliath is used as a backend and a frontend proxy also bein...
CVE-2020-7670HIGH7.5agoo prior to 2.14.0 allows request smuggling attacks where agoo is used as a backend and a frontend proxy also being vu...
CVE-2020-13270HIGH8.8Missing permission check on fork relation creation in GitLab CE/EE 11.3 and later through 13.0.1 allows guest users to c...
CVE-2020-6271HIGH8.2SAP Solution Manager (Problem Context Manager), version 7.2, does not perform the necessary authentication, allowing an ...
CVE-2020-6268HIGH8.1Statutory Reporting for Insurance Companies in SAP ERP (EA-FINSERV versions - 600, 603, 604, 605, 606, 616, 617, 618, 80...
CVE-2020-6264HIGH7.5SAP Commerce, versions - 6.7, 1808, 1811, 1905, may allow an attacker to access information under certain conditions whi...
CVE-2020-4436HIGH7.5Certain IBM Aspera applications are vulnerable to buffer overflow after valid authentication, which could allow an attac...
CVE-2020-4435HIGH7.5Certain IBM Aspera applications are vulnerable to arbitrary memory corruption based on the product configuration, which ...
CVE-2020-4434HIGH7.5Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentic...
CVE-2020-4433HIGH7.5Certain IBM Aspera applications are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. Thi...
CVE-2020-4432HIGH7.5Certain IBM Aspera applications are vulnerable to command injection after valid authentication, which could allow an att...
CVE-2020-7280HIGH7.8Privilege Escalation vulnerability during daily DAT updates when using McAfee Virus Scan Enterprise (VSE) prior to 8.8 P...
CVE-2020-7279HIGH7.8DLL Search Order Hijacking Vulnerability in the installer component of McAfee Host Intrusion Prevention System (Host IPS...
CVE-2020-13996HIGH8.8The J2Store plugin before 3.3.13 for Joomla! allows a SQL injection attack by a trusted store manager.
CVE-2020-1334HIGH7.8An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windo...
CVE-2020-1324HIGH7.8An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain o...
CVE-2020-1321HIGH8.8A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in me...
CVE-2020-1317HIGH8.8An elevation of privilege vulnerability exists when Group Policy improperly checks access, aka 'Group Policy Elevation o...
CVE-2020-1316HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now