2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-29375 | HIGH | 8.8 | 0.8% | Nov 29, 2020 | An issue was discovered on V-SOL V1600D V2.03.69 and V2.03.57, V1600D4L V1.01.49, V1600D-MINI V1.01.48, V1600G1 V2.0.7 a... |
| CVE-2020-29374 | LOW | 3.6 | 0.4% | Nov 28, 2020 | An issue was discovered in the Linux kernel before 5.7.3, related to mm/gup.c and mm/huge_memory.c. The get_user_pages (... |
| CVE-2020-29373 | MEDIUM | 6.5 | 0.5% | Nov 28, 2020 | An issue was discovered in fs/io_uring.c in the Linux kernel before 5.6. It unsafely handles the root directory during p... |
| CVE-2020-29372 | MEDIUM | 4.7 | 0.4% | Nov 28, 2020 | An issue was discovered in do_madvise in mm/madvise.c in the Linux kernel before 5.6.8. There is a race condition betwee... |
| CVE-2020-29371 | LOW | 3.3 | 0.7% | Nov 28, 2020 | An issue was discovered in romfs_dev_read in fs/romfs/storage.c in the Linux kernel before 5.8.4. Uninitialized memory l... |
| CVE-2020-29370 | HIGH | 7 | 0.6% | Nov 28, 2020 | An issue was discovered in kmem_cache_alloc_bulk in mm/slub.c in the Linux kernel before 5.5.11. The slowpath lacks the ... |
| CVE-2020-29369 | HIGH | 7 | 0.4% | Nov 28, 2020 | An issue was discovered in mm/mmap.c in the Linux kernel before 5.7.11. There is a race condition between certain expand... |
| CVE-2020-29368 | HIGH | 7 | 0.4% | Nov 28, 2020 | An issue was discovered in __split_huge_pmd in mm/huge_memory.c in the Linux kernel before 5.7.5. The copy-on-write impl... |
| CVE-2020-27218 | MEDIUM | 4.8 | 8.1% | Nov 28, 2020 | In Eclipse Jetty version 9.4.0.RC0 to 9.4.34.v20201102, 10.0.0.alpha0 to 10.0.0.beta2, and 11.0.0.alpha0 to 11.0.0.beta2... |
| CVE-2020-29367 | HIGH | 7.8 | 1.2% | Nov 27, 2020 | blosc2.c in Blosc C-Blosc2 through 2.0.0.beta.5 has a heap-based buffer overflow when there is a lack of space to write ... |
| CVE-2020-26245 | CRITICAL | 9.8 | 1.9% | Nov 27, 2020 | npm package systeminformation before version 4.30.5 is vulnerable to Prototype Pollution leading to Command Injection. T... |
| CVE-2020-28922 | HIGH | 8.8 | 0.7% | Nov 27, 2020 | An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL fun... |
| CVE-2020-28921 | HIGH | 8.8 | 0.6% | Nov 27, 2020 | An issue was discovered in Devid Espenschied PC Analyser through 4.10. The PCADRVX64.SYS kernel driver exposes IOCTL fun... |
| CVE-2020-27746 | LOW | 3.7 | 0.8% | Nov 27, 2020 | Slurm before 19.05.8 and 20.x before 20.02.6 exposes Sensitive Information to an Unauthorized Actor because xauth for X1... |
| CVE-2020-25708 | HIGH | 7.5 | 1.6% | Nov 27, 2020 | A divide by zero issue was found to occur in libvncserver-0.9.12. A malicious client could use this flaw to send a speci... |
| CVE-2020-25014 | CRITICAL | 9.8 | 4.3% | Nov 27, 2020 | A stack-based buffer overflow in fbwifi_continue.cgi on Zyxel UTM and VPN series of gateways running firmware version V4... |
| CVE-2020-10772 | HIGH | 7.5 | 1.3% | Nov 27, 2020 | An incomplete fix for CVE-2020-12662 was shipped for Unbound in Red Hat Enterprise Linux 7, as part of erratum RHSA-2020... |
| CVE-2020-7780 | HIGH | 8.8 | 0.6% | Nov 27, 2020 | This affects the package com.softwaremill.akka-http-session:core_2.13 before 0.5.11; the package com.softwaremill.akka-h... |
| CVE-2020-27745 | CRITICAL | 9.8 | 2.4% | Nov 27, 2020 | Slurm before 19.05.8 and 20.x before 20.02.6 has an RPC Buffer Overflow in the PMIx MPI plugin. |
| CVE-2020-29138 | MEDIUM | 5.3 | 1.1% | Nov 27, 2020 | Incorrect Access Control in the configuration backup path in SAGEMCOM F@ST3486 NET DOCSIS 3.0, software NET_4.109.0, all... |
| CVE-2020-25738 | MEDIUM | 5.5 | 0.4% | Nov 27, 2020 | CyberArk Endpoint Privilege Manager (EPM) 11.1.0.173 allows attackers to bypass a Credential Theft protection mechanism ... |
| CVE-2020-29145 | MEDIUM | 5.4 | 0.5% | Nov 27, 2020 | In Ericsson BSCS iX R18 Billing & Rating iX R18, ADMX is a web base module in BSCS iX that is vulnerable to stored XSS v... |
| CVE-2020-29144 | MEDIUM | 5.4 | 0.5% | Nov 27, 2020 | In Ericsson BSCS iX R18 Billing & Rating iX R18, MX is a web base module in BSCS iX that is vulnerable to stored XSS via... |
| CVE-2020-29137 | MEDIUM | 6.1 | 0.6% | Nov 27, 2020 | cPanel before 90.0.17 allows self-XSS via the WHM Transfer Tool interface (SEC-577). |
| CVE-2020-29136 | MEDIUM | 6.5 | 1.2% | Nov 27, 2020 | In cPanel before 90.0.17, 2FA can be bypassed via a brute-force approach (SEC-575). |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now