2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0118 | HIGH | 7.8 | 0.2% | Jun 10, 2020 | In addListener of RegionSamplingThread.cpp, there is a possible out of bounds write due to improper input validation. Th... |
| CVE-2020-0115 | HIGH | 7.8 | 0.2% | Jun 10, 2020 | In verifyIntentFiltersIfNeeded of PackageManagerService.java, there is a possible settings bypass allowing an app to bec... |
| CVE-2020-0114 | HIGH | 7.8 | 0.3% | Jun 10, 2020 | In onCreateSliceProvider of KeyguardSliceProvider.java, there is a possible confused deputy due to a PendingIntent error... |
| CVE-2020-7586 | HIGH | 7.8 | 0.4% | Jun 10, 2020 | A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions <... |
| CVE-2020-7585 | HIGH | 7.8 | 0.4% | Jun 10, 2020 | A vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions <... |
| CVE-2020-7672 | HIGH | 8.6 | 1.9% | Jun 10, 2020 | mosc through 1.0.0 is vulnerable to Arbitrary Code Execution. User input provided to `properties` argument is executed b... |
| CVE-2020-7671 | HIGH | 7.5 | 1.2% | Jun 10, 2020 | goliath through 1.0.6 allows request smuggling attacks where goliath is used as a backend and a frontend proxy also bein... |
| CVE-2020-7670 | HIGH | 7.5 | 1.2% | Jun 10, 2020 | agoo prior to 2.14.0 allows request smuggling attacks where agoo is used as a backend and a frontend proxy also being vu... |
| CVE-2020-13270 | HIGH | 8.8 | 1.4% | Jun 10, 2020 | Missing permission check on fork relation creation in GitLab CE/EE 11.3 and later through 13.0.1 allows guest users to c... |
| CVE-2020-6271 | HIGH | 8.2 | 1.2% | Jun 10, 2020 | SAP Solution Manager (Problem Context Manager), version 7.2, does not perform the necessary authentication, allowing an ... |
| CVE-2020-6268 | HIGH | 8.1 | 0.7% | Jun 10, 2020 | Statutory Reporting for Insurance Companies in SAP ERP (EA-FINSERV versions - 600, 603, 604, 605, 606, 616, 617, 618, 80... |
| CVE-2020-6264 | HIGH | 7.5 | 1.0% | Jun 10, 2020 | SAP Commerce, versions - 6.7, 1808, 1811, 1905, may allow an attacker to access information under certain conditions whi... |
| CVE-2020-4436 | HIGH | 7.5 | 3.1% | Jun 10, 2020 | Certain IBM Aspera applications are vulnerable to buffer overflow after valid authentication, which could allow an attac... |
| CVE-2020-4435 | HIGH | 7.5 | 1.6% | Jun 10, 2020 | Certain IBM Aspera applications are vulnerable to arbitrary memory corruption based on the product configuration, which ... |
| CVE-2020-4434 | HIGH | 7.5 | 2.6% | Jun 10, 2020 | Certain IBM Aspera applications are vulnerable to buffer overflow based on the product configuration and valid authentic... |
| CVE-2020-4433 | HIGH | 7.5 | 5.1% | Jun 10, 2020 | Certain IBM Aspera applications are vulnerable to a stack-based buffer overflow, caused by improper bounds checking. Thi... |
| CVE-2020-4432 | HIGH | 7.5 | 3.4% | Jun 10, 2020 | Certain IBM Aspera applications are vulnerable to command injection after valid authentication, which could allow an att... |
| CVE-2020-7280 | HIGH | 7.8 | 0.4% | Jun 10, 2020 | Privilege Escalation vulnerability during daily DAT updates when using McAfee Virus Scan Enterprise (VSE) prior to 8.8 P... |
| CVE-2020-7279 | HIGH | 7.8 | 0.4% | Jun 10, 2020 | DLL Search Order Hijacking Vulnerability in the installer component of McAfee Host Intrusion Prevention System (Host IPS... |
| CVE-2020-13996 | HIGH | 8.8 | 1.3% | Jun 9, 2020 | The J2Store plugin before 3.3.13 for Joomla! allows a SQL injection attack by a trusted store manager. |
| CVE-2020-1334 | HIGH | 7.8 | 0.7% | Jun 9, 2020 | An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windo... |
| CVE-2020-1324 | HIGH | 7.8 | 0.8% | Jun 9, 2020 | An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain o... |
| CVE-2020-1321 | HIGH | 8.8 | 11.6% | Jun 9, 2020 | A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in me... |
| CVE-2020-1317 | HIGH | 8.8 | 4.3% | Jun 9, 2020 | An elevation of privilege vulnerability exists when Group Policy improperly checks access, aka 'Group Policy Elevation o... |
| CVE-2020-1316 | HIGH | 7.8 | 0.9% | Jun 9, 2020 | An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now