2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7273 | MEDIUM | 5.5 | 0.2% | Apr 15, 2020 | Accessing functionality not properly constrained by ACLs vulnerability in the autorun start-up protection in McAfee Endp... |
| CVE-2020-7261 | MEDIUM | 5.5 | 0.2% | Apr 15, 2020 | Buffer Overflow via Environment Variables vulnerability in AMSI component in McAfee Endpoint Security (ENS) Prior to 10.... |
| CVE-2020-7257 | MEDIUM | 6.3 | 0.3% | Apr 15, 2020 | Privilege escalation vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2020 Update al... |
| CVE-2020-7278 | MEDIUM | 6.5 | 0.6% | Apr 15, 2020 | Exploiting incorrectly configured access control security levels vulnerability in ENS Firewall in McAfee Endpoint Securi... |
| CVE-2020-10513 | MEDIUM | 6.5 | 0.8% | Apr 15, 2020 | The file management interface of iCatch DVR firmware before 20200103 contains broken access control which allows the att... |
| CVE-2020-11765 | MEDIUM | 5.5 | 1.7% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an off-by-one error in use of the ImfXdr.h read function by Dw... |
| CVE-2020-11764 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds write in copyIntoFrameBuffer in ImfMisc.cpp. |
| CVE-2020-11763 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an std::vector out-of-bounds read and write, as demonstrated b... |
| CVE-2020-11762 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress i... |
| CVE-2020-11761 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonst... |
| CVE-2020-11760 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during RLE uncompression in rleUncompres... |
| CVE-2020-11759 | MEDIUM | 5.5 | 1.7% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeep... |
| CVE-2020-11758 | MEDIUM | 5.5 | 1.8% | Apr 14, 2020 | An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h. |
| CVE-2020-11005 | MEDIUM | 5.5 | 0.2% | Apr 14, 2020 | The WindowsHello open source library (NuGet HaemmerElectronics.SeppPenner.WindowsHello), before version 1.0.4, has a vul... |
| CVE-2020-11001 | MEDIUM | 6.8 | 1.3% | Apr 14, 2020 | In Wagtail before versions 2.8.1 and 2.7.2, a cross-site scripting (XSS) vulnerability exists on the page revision compa... |
| CVE-2020-8324 | MEDIUM | 5.5 | 0.3% | Apr 14, 2020 | A vulnerability was reported in LenovoAppScenarioPluginSystem for Lenovo System Interface Foundation prior to version 1.... |
| CVE-2020-8316 | MEDIUM | 4.4 | 0.3% | Apr 14, 2020 | A vulnerability was reported in Lenovo Vantage prior to version 10.2003.10.0 that could allow an authenticated user to r... |
| CVE-2020-7575 | MEDIUM | 6.1 | 0.6% | Apr 14, 2020 | A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (... |
| CVE-2020-7574 | MEDIUM | 6.1 | 0.6% | Apr 14, 2020 | A vulnerability has been identified in Climatix POL908 (BACnet/IP module) (All versions), Climatix POL909 (AWM module) (... |
| CVE-2020-6217 | MEDIUM | 6.1 | 0.7% | Apr 14, 2020 | SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752,... |
| CVE-2020-6215 | MEDIUM | 6.1 | 1.5% | Apr 14, 2020 | SAP NetWeaver AS ABAP Business Server Pages Test Application IT00, versions 700, 701, 702, 730, 731, 740, 750, 751, 752,... |
| CVE-2020-6211 | MEDIUM | 6.1 | 0.7% | Apr 14, 2020 | SAP Business Objects Business Intelligence Platform (AdminTools), versions 4.1, 4.2, allows an attacker to redirect user... |
| CVE-2020-11723 | MEDIUM | 5.5 | 0.4% | Apr 14, 2020 | Cellebrite UFED 5.0 through 7.29 uses four hardcoded RSA private keys to authenticate to the ADB daemon on target device... |
| CVE-2020-6233 | MEDIUM | 4.3 | 0.7% | Apr 14, 2020 | SAP S/4 HANA (Financial Products Subledger and Banking Services), versions - FSAPPL 400, 450, 500 and S4FPSL 100, allows... |
| CVE-2020-6232 | MEDIUM | 5.3 | 0.8% | Apr 14, 2020 | SAP Commerce, versions 1811, 1905, does not perform necessary authorization checks for an anonymous user, due to Missing... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now