2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-1733MEDIUM5A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a play...
CVE-2020-6210MEDIUM6.1SAP Fiori Launchpad, versions- 753, 754, does not sufficiently encode user-controlled inputs, and hence allowing the att...
CVE-2020-6206MEDIUM4.3SAP Cloud Platform Integration for Data Services, version 1.0, allows user inputs to be reflected as error or warning ma...
CVE-2020-6205MEDIUM6.1SAP NetWeaver AS ABAP Business Server Pages (Smart Forms), SAP_BASIS versions- 7.00, 7.01, 7.02, 7.10, 7.11, 7.30, 7.31,...
CVE-2020-6204MEDIUM4.3The selection query in SAP Treasury and Risk Management (Transaction Management) (EA-FINSERV?versions 600, 603, 604, 605...
CVE-2020-6201MEDIUM6.1The SAP Commerce (Testweb Extension), versions- 6.6, 6.7, 1808, 1811, 1905, does not sufficiently encode user-controlled...
CVE-2020-6200MEDIUM5.4The SAP Commerce (SmartEdit Extension), versions- 6.6, 6.7, 1808, 1811, is vulnerable to client-side angularjs template ...
CVE-2020-6199MEDIUM5.4The view FIMENAV_COMPCERT in SAP ERP (MENA Certificate Management), EAPPGLO version 607, SAP_FIN versions- 618, 730 and ...
CVE-2020-6178MEDIUM5.4SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser his...
CVE-2020-10372MEDIUM5.4Ramp AltitudeCDN Altimeter before 2.4.0 allows authenticated Stored XSS via the vdms/ipmapping.jsp location field to the...
CVE-2020-0087MEDIUM5.5In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclosure. This could lea...
CVE-2020-0066MEDIUM6.4In the netlink driver, there is a possible out of bounds write due to a race condition. This could lead to local escalat...
CVE-2020-0057MEDIUM5.5In btm_process_inq_results of btm_inq.cc, there is a possible out of bounds read due to a missing bounds check. This cou...
CVE-2020-0056MEDIUM5.5In btu_hcif_connection_comp_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. Th...
CVE-2020-0055MEDIUM5.5In l2c_link_process_num_completed_pkts of l2c_link.cc, there is a possible out of bounds read due to a missing bounds ch...
CVE-2020-0053MEDIUM6.7In convertHidlNanDataPathInitiatorRequestToLegacy, and convertHidlNanDataPathIndicationResponseToLegacy of hidl_struct_u...
CVE-2020-0052MEDIUM4.3In smsSelected of AnswerFragment.java, there is a way to send an SMS from the lock screen due to a permissions bypass. T...
CVE-2020-0050MEDIUM6.7In nfa_hciu_send_msg of nfa_hci_utils.cc, there is a possible out of bounds write due to improper input validation. This...
CVE-2020-0049MEDIUM6.5In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This cou...
CVE-2020-0048MEDIUM5.5In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data. This could lea...
CVE-2020-0045MEDIUM6.4In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race condition. This could le...
CVE-2020-7579MEDIUM6.1A vulnerability has been identified in Spectrum Power™ 5 (All versions < v5.50 HF02). The web server could allow Cross-S...
CVE-2020-0061MEDIUM5.5In Pixel Recorder, there is a possible permissions bypass allowing arbitrary apps to record audio. This could lead to lo...
CVE-2020-0060MEDIUM4.4In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection. This c...
CVE-2020-0059MEDIUM5.5In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now