2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11072 | HIGH | 8.6 | 1.0% | May 12, 2020 | In SLP Validate (npm package slp-validate) before version 1.2.1, users could experience false-negative validation outcom... |
| CVE-2020-11071 | HIGH | 8.6 | 0.9% | May 12, 2020 | SLPJS (npm package slpjs) before version 0.27.2, has a vulnerability where users could experience false-negative validat... |
| CVE-2020-10067 | HIGH | 7.8 | 0.4% | May 11, 2020 | A malicious userspace application can cause a integer overflow and bypass security checks performed by system call handl... |
| CVE-2020-10058 | HIGH | 7.8 | 0.4% | May 11, 2020 | Multiple syscalls in the Kscan subsystem perform insufficient argument validation, allowing code executing in userspace ... |
| CVE-2020-10028 | HIGH | 7.8 | 0.4% | May 11, 2020 | Multiple syscalls with insufficient argument validation See NCC-ZEP-006 This issue affects: zephyrproject-rtos zephyr ve... |
| CVE-2020-10027 | HIGH | 7.8 | 0.7% | May 11, 2020 | An attacker who has obtained code execution within a user thread is able to elevate privileges to that of the kernel. Se... |
| CVE-2020-10024 | HIGH | 7.8 | 0.7% | May 11, 2020 | The arm platform-specific code uses a signed integer comparison when validating system call numbers. An attacker who has... |
| CVE-2020-10021 | HIGH | 7.8 | 0.4% | May 11, 2020 | Out-of-bounds Write in the USB Mass Storage memoryWrite handler with unaligned Sizes See NCC-ZEP-024, NCC-ZEP-025, NCC-Z... |
| CVE-2020-10019 | HIGH | 7.8 | 0.5% | May 11, 2020 | USB DFU has a potential buffer overflow where the requested length (wLength) is not checked against the buffer size. Thi... |
| CVE-2020-9840 | HIGH | 7.5 | 1.0% | May 11, 2020 | In SwiftNIO Extras before 1.4.1, a logic issue was addressed with improved restrictions. |
| CVE-2020-5837 | HIGH | 7.8 | 0.7% | May 11, 2020 | Symantec Endpoint Protection, prior to 14.3, may not respect file permissions when writing to log files that are replace... |
| CVE-2020-5836 | HIGH | 7.8 | 0.4% | May 11, 2020 | Symantec Endpoint Protection, prior to 14.3, can potentially reset the ACLs on a file as a limited user while Symantec E... |
| CVE-2020-5835 | HIGH | 7 | 0.3% | May 11, 2020 | Symantec Endpoint Protection Manager, prior to 14.3, has a race condition in client remote deployment which may result i... |
| CVE-2020-12790 | HIGH | 7.5 | 2.2% | May 11, 2020 | In the SEOmatic plugin before 3.2.49 for Craft CMS, helpers/DynamicMeta.php does not properly sanitize the URL. This lea... |
| CVE-2020-12785 | HIGH | 8.1 | 0.9% | May 11, 2020 | cPanel before 86.0.14 allows attackers to obtain access to the current working directory via the account backup feature ... |
| CVE-2020-12760 | HIGH | 8.8 | 3.4% | May 11, 2020 | An issue was discovered in OpenNMS Horizon before 26.0.1, and Meridian before 2018.1.19 and 2019 before 2019.1.7. The Ac... |
| CVE-2020-12754 | HIGH | 7.8 | 0.3% | May 11, 2020 | An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A crafted application ca... |
| CVE-2020-12752 | HIGH | 7.5 | 0.5% | May 11, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. Attackers can determi... |
| CVE-2020-12751 | HIGH | 7.8 | 0.5% | May 11, 2020 | An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) software. The Quram image codec libra... |
| CVE-2020-12750 | HIGH | 7.5 | 0.4% | May 11, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass Factory Reset Protection (... |
| CVE-2020-12749 | HIGH | 7.8 | 0.2% | May 11, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) (Exynos chipsets) software. The S.LSI Wi-Fi drivers have a... |
| CVE-2020-12745 | HIGH | 7.5 | 0.4% | May 11, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protectio... |
| CVE-2020-11866 | HIGH | 7.8 | 1.3% | May 11, 2020 | libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows a use-after-free. |
| CVE-2020-11865 | HIGH | 7.8 | 1.4% | May 11, 2020 | libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows out-of-bounds memory access. |
| CVE-2020-11108 | HIGH | 8.8 | 78.3% | May 11, 2020 | The Gravity updater in Pi-hole through 4.4 allows an authenticated adversary to upload arbitrary files. This can be abus... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now