2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-7332HIGH8.8Cross Site Request Forgery vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0...
CVE-2020-7331HIGH7.8Unquoted service executable path in McAfee Endpoint Security (ENS) prior to 10.7.0 November 2020 Update allows local use...
CVE-2020-3639CRITICAL9.8u'When a non standard SIP sigcomp message is received from the network, then there may be chances of using more UDVM cyc...
CVE-2020-3632HIGH7.8u'Incorrect validation of ring context fetched from host memory can lead to memory overflow' in Snapdragon Compute, Snap...
CVE-2020-11209MEDIUM5.5Improper authorization in DSP process could allow unauthorized users to downgrade the library versions in SD820, SD821, ...
CVE-2020-11208HIGH7.8Out of Bound issue in DSP services while processing received arguments due to improper validation of length received as ...
CVE-2020-11207HIGH7.8Buffer overflow in LibFastCV library due to improper size checks with respect to buffer length' in Snapdragon Auto, Snap...
CVE-2020-11206HIGH7.8Possible buffer overflow in Fastrpc while handling received parameters due to lack of validation on input parameters' in...
CVE-2020-11205HIGH7.8u'Possible integer overflow to heap overflow while processing command due to lack of check of packet length received' in...
CVE-2020-11202HIGH7.8Buffer overflow/underflow occurs when typecasting the buffer passed by CPU internally in the library which is not aligne...
CVE-2020-11201HIGH7.8Arbitrary access to DSP memory due to improper check in loaded library for data received from CPU side' in Snapdragon Au...
CVE-2020-11196CRITICAL9.8u'Integer overflow to buffer overflow occurs while playback of ASF clip having unexpected number of codec entries' in Sn...
CVE-2020-11193CRITICAL9.8u'Buffer over read can happen while parsing mkv clip due to improper typecasting of data returned from atomsize' in Snap...
CVE-2020-11184CRITICAL9.8u'Possible buffer overflow will occur in video while parsing mp4 clip with crafted esds atom size.' in Snapdragon Auto, ...
CVE-2020-11175HIGH7.8u'Use after free issue in Bluetooth transport driver when a method in the object is accessed after the object has been d...
CVE-2020-11168CRITICAL9.8u'Null-pointer dereference can occur while accessing data buffer beyond its size that leads to access the buffer beyond ...
CVE-2020-11132HIGH7.1u'Buffer over read in boot due to size check ignored before copying GUID attribute from request to response' in Snapdrag...
CVE-2020-11131HIGH7.8u'Possible buffer overflow in WMA message processing due to integer overflow occurs when processing command received fro...
CVE-2020-11130HIGH7.8u'Possible buffer overflow in WIFI hal process due to copying data without checking the buffer length' in Snapdragon Aut...
CVE-2020-11127HIGH7.8u'Integer overflow can cause a buffer overflow due to lack of table length check in the extensible boot Loader during th...
CVE-2020-11123MEDIUM5.5u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attem...
CVE-2020-11121HIGH7.8u'Possible buffer overflow in WIFI hal process due to usage of memcpy without checking length of destination buffer' in ...
CVE-2020-7769CRITICAL9.8This affects the package nodemailer before 6.4.16. Use of crafted recipient email addresses may result in arbitrary comm...
CVE-2020-26070HIGH8.6A vulnerability in the ingress packet processing function of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation...
CVE-2020-2050HIGH8.2An authentication bypass vulnerability exists in the GlobalProtect SSL VPN component of Palo Alto Networks PAN-OS softwa...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now