2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-12309 | MEDIUM | 4.6 | 0.3% | Nov 12, 2020 | Insufficiently protected credentialsin subsystem in some Intel(R) Client SSDs and some Intel(R) Data Center SSDs may all... |
| CVE-2020-12308 | MEDIUM | 6.5 | 0.9% | Nov 12, 2020 | Improper access control for the Intel(R) Computing Improvement Program before version 2.4.5982 may allow an unprivileged... |
| CVE-2020-12307 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Improper permissions in some Intel(R) High Definition Audio drivers before version 9.21.00.4561 may allow an authenticat... |
| CVE-2020-12306 | HIGH | 7.8 | 0.3% | Nov 12, 2020 | Incorrect default permissions in the Intel(R) RealSense(TM) D400 Series Dynamic Calibration Tool before version 2.11, ma... |
| CVE-2020-12304 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Improper access control in Installer for Intel(R) DAL SDK before version 2.1 for Windows may allow an authenticated user... |
| CVE-2020-12303 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Use after free in DAL subsystem for Intel(R) CSME versions before 11.8.80, 11.12.80, 11.22.80, 12.0.70, 13.0.40, 13.30.1... |
| CVE-2020-12297 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Improper access control in Installer for Intel(R) CSME Driver for Windows versions before 11.8.80, 11.12.80, 11.22.80, 1... |
| CVE-2020-0593 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially en... |
| CVE-2020-0592 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable ... |
| CVE-2020-0591 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially en... |
| CVE-2020-0590 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Improper input validation in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially e... |
| CVE-2020-0588 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enabl... |
| CVE-2020-0587 | MEDIUM | 6.7 | 0.3% | Nov 12, 2020 | Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enabl... |
| CVE-2020-0584 | MEDIUM | 6.2 | 0.3% | Nov 12, 2020 | Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 900P and 905P Series m... |
| CVE-2020-0575 | MEDIUM | 5.5 | 0.3% | Nov 12, 2020 | Improper buffer restrictions in the Intel(R) Unite Client for Windows* before version 4.2.13064 may allow an authenticat... |
| CVE-2020-24443 | MEDIUM | 6.1 | 1.5% | Nov 12, 2020 | Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an atta... |
| CVE-2020-24442 | MEDIUM | 6.1 | 1.5% | Nov 12, 2020 | Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an atta... |
| CVE-2020-24441 | MEDIUM | 5.5 | 2.3% | Nov 12, 2020 | Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created b... |
| CVE-2020-9128 | MEDIUM | 4.4 | 0.1% | Nov 12, 2020 | FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can ex... |
| CVE-2020-27481 | CRITICAL | 9.8 | 10.6% | Nov 12, 2020 | An unauthenticated SQL Injection vulnerability in Good Layers LMS Plugin <= 2.1.4 exists due to the usage of "wp_ajax_no... |
| CVE-2020-25706 | MEDIUM | 6.1 | 2.8% | Nov 12, 2020 | A cross-site scripting (XSS) vulnerability exists in templates_import.php (Cacti 1.2.13) due to Improper escaping of err... |
| CVE-2020-25658 | MEDIUM | 5.9 | 1.6% | Nov 12, 2020 | It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA d... |
| CVE-2020-13954 | MEDIUM | 6.1 | 43.0% | Nov 12, 2020 | By default, Apache CXF creates a /services page containing a listing of the available endpoint names and addresses. This... |
| CVE-2020-7770 | CRITICAL | 9.8 | 1.9% | Nov 12, 2020 | This affects the package json8 before 1.0.3. The function adds in the target object the property specified in the path, ... |
| CVE-2020-7333 | MEDIUM | 4.8 | 0.5% | Nov 12, 2020 | Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 Novem... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now