2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-1733 | MEDIUM | 5 | 0.4% | Mar 11, 2020 | A race condition flaw was found in Ansible Engine 2.7.17 and prior, 2.8.9 and prior, 2.9.6 and prior when running a play... |
| CVE-2020-6210 | MEDIUM | 6.1 | 0.7% | Mar 10, 2020 | SAP Fiori Launchpad, versions- 753, 754, does not sufficiently encode user-controlled inputs, and hence allowing the att... |
| CVE-2020-6206 | MEDIUM | 4.3 | 0.4% | Mar 10, 2020 | SAP Cloud Platform Integration for Data Services, version 1.0, allows user inputs to be reflected as error or warning ma... |
| CVE-2020-6205 | MEDIUM | 6.1 | 0.7% | Mar 10, 2020 | SAP NetWeaver AS ABAP Business Server Pages (Smart Forms), SAP_BASIS versions- 7.00, 7.01, 7.02, 7.10, 7.11, 7.30, 7.31,... |
| CVE-2020-6204 | MEDIUM | 4.3 | 0.6% | Mar 10, 2020 | The selection query in SAP Treasury and Risk Management (Transaction Management) (EA-FINSERV?versions 600, 603, 604, 605... |
| CVE-2020-6201 | MEDIUM | 6.1 | 0.8% | Mar 10, 2020 | The SAP Commerce (Testweb Extension), versions- 6.6, 6.7, 1808, 1811, 1905, does not sufficiently encode user-controlled... |
| CVE-2020-6200 | MEDIUM | 5.4 | 0.5% | Mar 10, 2020 | The SAP Commerce (SmartEdit Extension), versions- 6.6, 6.7, 1808, 1811, is vulnerable to client-side angularjs template ... |
| CVE-2020-6199 | MEDIUM | 5.4 | 0.3% | Mar 10, 2020 | The view FIMENAV_COMPCERT in SAP ERP (MENA Certificate Management), EAPPGLO version 607, SAP_FIN versions- 618, 730 and ... |
| CVE-2020-6178 | MEDIUM | 5.4 | 0.7% | Mar 10, 2020 | SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser his... |
| CVE-2020-10372 | MEDIUM | 5.4 | 0.6% | Mar 10, 2020 | Ramp AltitudeCDN Altimeter before 2.4.0 allows authenticated Stored XSS via the vdms/ipmapping.jsp location field to the... |
| CVE-2020-0087 | MEDIUM | 5.5 | 0.1% | Mar 10, 2020 | In getProcessPss of ActivityManagerService.java, there is a possible side channel information disclosure. This could lea... |
| CVE-2020-0066 | MEDIUM | 6.4 | 0.1% | Mar 10, 2020 | In the netlink driver, there is a possible out of bounds write due to a race condition. This could lead to local escalat... |
| CVE-2020-0057 | MEDIUM | 5.5 | 0.2% | Mar 10, 2020 | In btm_process_inq_results of btm_inq.cc, there is a possible out of bounds read due to a missing bounds check. This cou... |
| CVE-2020-0056 | MEDIUM | 5.5 | 0.2% | Mar 10, 2020 | In btu_hcif_connection_comp_evt of btu_hcif.cc, there is a possible out of bounds read due to a missing bounds check. Th... |
| CVE-2020-0055 | MEDIUM | 5.5 | 0.2% | Mar 10, 2020 | In l2c_link_process_num_completed_pkts of l2c_link.cc, there is a possible out of bounds read due to a missing bounds ch... |
| CVE-2020-0053 | MEDIUM | 6.7 | 0.2% | Mar 10, 2020 | In convertHidlNanDataPathInitiatorRequestToLegacy, and convertHidlNanDataPathIndicationResponseToLegacy of hidl_struct_u... |
| CVE-2020-0052 | MEDIUM | 4.3 | 0.2% | Mar 10, 2020 | In smsSelected of AnswerFragment.java, there is a way to send an SMS from the lock screen due to a permissions bypass. T... |
| CVE-2020-0050 | MEDIUM | 6.7 | 0.2% | Mar 10, 2020 | In nfa_hciu_send_msg of nfa_hci_utils.cc, there is a possible out of bounds write due to improper input validation. This... |
| CVE-2020-0049 | MEDIUM | 6.5 | 0.7% | Mar 10, 2020 | In onReadBuffer() of StreamingSource.cpp, there is a possible information disclosure due to uninitialized data. This cou... |
| CVE-2020-0048 | MEDIUM | 5.5 | 0.1% | Mar 10, 2020 | In onTransact of IAudioFlinger.cpp, there is a possible stack information leak due to uninitialized data. This could lea... |
| CVE-2020-0045 | MEDIUM | 6.4 | 0.1% | Mar 10, 2020 | In StatsService::command of StatsService.cpp, there is possible memory corruption due to a race condition. This could le... |
| CVE-2020-7579 | MEDIUM | 6.1 | 0.8% | Mar 10, 2020 | A vulnerability has been identified in Spectrum Power™ 5 (All versions < v5.50 HF02). The web server could allow Cross-S... |
| CVE-2020-0061 | MEDIUM | 5.5 | 0.2% | Mar 10, 2020 | In Pixel Recorder, there is a possible permissions bypass allowing arbitrary apps to record audio. This could lead to lo... |
| CVE-2020-0060 | MEDIUM | 4.4 | 0.2% | Mar 10, 2020 | In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection. This c... |
| CVE-2020-0059 | MEDIUM | 5.5 | 0.2% | Mar 10, 2020 | In btm_ble_batchscan_filter_track_adv_vse_cback of btm_ble_batchscan.cc, there is a possible out of bounds read due to a... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now