2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7332 | HIGH | 8.8 | 0.6% | Nov 12, 2020 | Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0... |
| CVE-2020-7331 | HIGH | 7.8 | 0.4% | Nov 12, 2020 | Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local use... |
| CVE-2020-3639 | CRITICAL | 9.8 | 0.9% | Nov 12, 2020 | u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cyc... |
| CVE-2020-3632 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snap... |
| CVE-2020-11209 | MEDIUM | 5.5 | 1.6% | Nov 12, 2020 | Improper authorization in DSP process could allow unauthorized users to downgrade the library versions in SD820, SD821, ... |
| CVE-2020-11208 | HIGH | 7.8 | 1.7% | Nov 12, 2020 | Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as ... |
| CVE-2020-11207 | HIGH | 7.8 | 1.5% | Nov 12, 2020 | Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snap... |
| CVE-2020-11206 | HIGH | 7.8 | 1.8% | Nov 12, 2020 | Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in... |
| CVE-2020-11205 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in... |
| CVE-2020-11202 | HIGH | 7.8 | 1.5% | Nov 12, 2020 | Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligne... |
| CVE-2020-11201 | HIGH | 7.8 | 1.8% | Nov 12, 2020 | Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Au... |
| CVE-2020-11196 | CRITICAL | 9.8 | 0.9% | Nov 12, 2020 | u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Sn... |
| CVE-2020-11193 | CRITICAL | 9.8 | 0.9% | Nov 12, 2020 | u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snap... |
| CVE-2020-11184 | CRITICAL | 9.8 | 0.9% | Nov 12, 2020 | u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, ... |
| CVE-2020-11175 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been d... |
| CVE-2020-11168 | CRITICAL | 9.8 | 0.9% | Nov 12, 2020 | u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond ... |
| CVE-2020-11132 | HIGH | 7.1 | 0.2% | Nov 12, 2020 | u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdrag... |
| CVE-2020-11131 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received fro... |
| CVE-2020-11130 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Aut... |
| CVE-2020-11127 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during th... |
| CVE-2020-11123 | MEDIUM | 5.5 | 0.2% | Nov 12, 2020 | u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attem... |
| CVE-2020-11121 | HIGH | 7.8 | 0.2% | Nov 12, 2020 | u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in ... |
| CVE-2020-7769 | CRITICAL | 9.8 | 2.3% | Nov 12, 2020 | This affects the package nodemailer before 6.4.16. Use of crafted recipient email addresses may result in arbitrary comm... |
| CVE-2020-26070 | HIGH | 8.6 | 1.9% | Nov 12, 2020 | A vulnerability in the ingress packet processing function of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation... |
| CVE-2020-2050 | HIGH | 8.2 | 1.0% | Nov 12, 2020 | An authentication bypass vulnerability exists in the GlobalProtect SSL VPN component of Palo Alto Networks PAN-OS softwa... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now