2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-8691MEDIUM6.7A logic issue in the firmware of the Intel(R) Ethernet 700 Series Controllers may allow a privileged user to potentially...
CVE-2020-8690MEDIUM6.7Protection mechanism failure in Intel(R) Ethernet 700 Series Controllers before version 7.3 may allow a privileged user ...
CVE-2020-8677MEDIUM4.4Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to poten...
CVE-2020-8676MEDIUM6.7Improper access control in the Intel(R) Visual Compute Accelerator 2, all versions, may allow a privileged user to poten...
CVE-2020-7472CRITICAL9.8An authorization bypass and PHP local-file-include vulnerability in the installation component of SugarCRM before 8.0, 8...
CVE-2020-28271CRITICAL9.8Prototype pollution vulnerability in 'deephas' versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service...
CVE-2020-28270CRITICAL9.8Prototype pollution vulnerability in 'object-hierarchy-access' versions 0.2.0 through 0.32.0 allows attacker to cause a ...
CVE-2020-28269CRITICAL9.8Prototype pollution vulnerability in 'field' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service a...
CVE-2020-28247MEDIUM5.3The lettre library through 0.10.0-alpha for Rust allows arbitrary sendmail option injection via transport/sendmail/mod.r...
CVE-2020-24573HIGH7.5BAB TECHNOLOGIE GmbH eibPort V3 prior to 3.8.3 devices allow denial of service (Uncontrolled Resource Consumption) via r...
CVE-2020-16091Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-27708. Reason: This candidate is a reservation d...
CVE-2020-13771HIGH7.8Various components in Ivanti Endpoint Manager through 2020.1.1 rely on Windows search order when loading a (nonexistent)...
CVE-2020-13770HIGH7.8Several services are accessing named pipes in Ivanti Endpoint Manager through 2020.1.1 with default or overly permissive...
CVE-2020-12356MEDIUM4.4Out-of-bounds read in subsystem in Intel(R) AMT versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70 and 14.0.45 may all...
CVE-2020-12355MEDIUM6.8Authentication bypass by capture-replay in RPMB protocol message authentication subsystem in Intel(R) TXE versions befor...
CVE-2020-12354HIGH7.8Incorrect default permissions in Windows(R) installer in Intel(R) AMT SDK versions before 14.0.0.1 may allow an authenti...
CVE-2020-12322MEDIUM6.5Improper input validation in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthentic...
CVE-2020-12321HIGH8.8Improper buffer restriction in some Intel(R) Wireless Bluetooth(R) products before version 21.110 may allow an unauthent...
CVE-2020-12319MEDIUM6.5Insufficient control flow management in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an u...
CVE-2020-12318HIGH7.8Protection mechanism failure in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an authentic...
CVE-2020-12317MEDIUM6.5Improper buffer restriction in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthenti...
CVE-2020-12314MEDIUM6.5Improper input validation in some Intel(R) PROSet/Wireless WiFi products before version 21.110 may allow an unauthentica...
CVE-2020-12312MEDIUM6.8Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro...
CVE-2020-12311MEDIUM4.6Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allo...
CVE-2020-12310MEDIUM4.6Insufficient control flow managementin firmware in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may allo...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now