2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-8691 | MEDIUM | 6.7 | 0.4% | Nov 12, 2020 | A logic issue in the firmware of the Intel(R) Ethernet 700 Series Controllers may allow a privileged user to potentially... |
| CVE-2020-8690 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user ... |
| CVE-2020-8677 | MEDIUM | 4.4 | 0.3% | Nov 12, 2020 | Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to poten... |
| CVE-2020-8676 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to poten... |
| CVE-2020-7472 | CRITICAL | 9.8 | 3.1% | Nov 12, 2020 | An authorization bypass and PHP local-file-include vulnerability in the installation component of SugarCRM before 8.0, 8... |
| CVE-2020-28271 | CRITICAL | 9.8 | 3.3% | Nov 12, 2020 | Prototype pollution vulnerability in 'deephas' versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service... |
| CVE-2020-28270 | CRITICAL | 9.8 | 3.7% | Nov 12, 2020 | Prototype pollution vulnerability in 'object-hierarchy-access' versions 0.2.0 through 0.32.0 allows attacker to cause a ... |
| CVE-2020-28269 | CRITICAL | 9.8 | 4.0% | Nov 12, 2020 | Prototype pollution vulnerability in 'field' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service a... |
| CVE-2020-28247 | MEDIUM | 5.3 | 1.5% | Nov 12, 2020 | The lettre library through 0.10.0-alpha for Rust allows arbitrary sendmail option injection via transport/sendmail/mod.r... |
| CVE-2020-24573 | HIGH | 7.5 | 1.4% | Nov 12, 2020 | BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via r... |
| CVE-2020-16091 | — | — | — | Nov 12, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-27708. Reason: This candidate is a reservation d... |
| CVE-2020-13771 | HIGH | 7.8 | 0.8% | Nov 12, 2020 | Various components in Ivanti Endpoint Manager through 2020.1.1 rely on Windows search order when loading a (nonexistent)... |
| CVE-2020-13770 | HIGH | 7.8 | 0.5% | Nov 12, 2020 | Several services are accessing named pipes in Ivanti Endpoint Manager through 2020.1.1 with default or overly permissive... |
| CVE-2020-12356 | MEDIUM | 4.4 | 0.4% | Nov 12, 2020 | Out-of-bounds read in subsystem in Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may all... |
| CVE-2020-12355 | MEDIUM | 6.8 | 0.4% | Nov 12, 2020 | Authentication bypass by capture-replay in RPMB protocol message authentication subsystem in Intel(R) TXE versions befor... |
| CVE-2020-12354 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Incorrect default permissions in Windows(R) installer in Intel(R) AMT SDK versions before 14.0.0.1 may allow an authenti... |
| CVE-2020-12322 | MEDIUM | 6.5 | 0.5% | Nov 12, 2020 | Improper input validation in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthentic... |
| CVE-2020-12321 | HIGH | 8.8 | 1.0% | Nov 12, 2020 | Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthent... |
| CVE-2020-12319 | MEDIUM | 6.5 | 0.7% | Nov 12, 2020 | Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an u... |
| CVE-2020-12318 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Protection mechanism failure in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an authentic... |
| CVE-2020-12317 | MEDIUM | 6.5 | 0.7% | Nov 12, 2020 | Improper buffer restriction in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenti... |
| CVE-2020-12314 | MEDIUM | 6.5 | 0.5% | Nov 12, 2020 | Improper input validation in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthentica... |
| CVE-2020-12312 | MEDIUM | 6.8 | 0.4% | Nov 12, 2020 | Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro... |
| CVE-2020-12311 | MEDIUM | 4.6 | 0.4% | Nov 12, 2020 | Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allo... |
| CVE-2020-12310 | MEDIUM | 4.6 | 0.4% | Nov 12, 2020 | Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allo... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now