2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-24667HIGH8.8Trace Financial CRESTBridge <6.3.0.02 contains an authenticated SQL injection vulnerability, which was fixed in 6.3.0.03...
CVE-2020-35452HIGH7.3Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_dige...
CVE-2020-13950HIGH7.5Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with special...
CVE-2020-24489HIGH8.8Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of pr...
CVE-2020-24474HIGH8Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2...
CVE-2020-24473HIGH7.8Out of bounds write in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before versi...
CVE-2020-8702HIGH7.3Uncontrolled search path element in the Intel(R) Processor Diagnostic Tool before version 4.1.5.37 may allow an authenti...
CVE-2020-27383HIGH7.8Battle.net.exe in Battle.Net 1.27.1.12428 suffers from an elevation of privileges vulnerability which can be used by an ...
CVE-2020-12360HIGH7.8Out of bounds read in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable es...
CVE-2020-15387HIGH7.4The host SSH servers of Brocade Fabric OS before Brocade Fabric OS v7.4.2h, v8.2.1c, v8.2.2, v9.0.0, and Brocade SANnav ...
CVE-2020-15380HIGH7.5Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level.
CVE-2020-15379HIGH7.5Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper ...
CVE-2020-27384HIGH7.8The Gw2-64.exe in Guild Wars 2 launcher version 106916 suffers from an elevation of privileges vulnerability which can b...
CVE-2020-15383HIGH7.5Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocad...
CVE-2020-15382HIGH7.2Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a passw...
CVE-2020-15381HIGH7.5Brocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission...
CVE-2020-11306HIGH7.8Possible integer overflow in RPMB counter due to lack of length check on user provided data in Snapdragon Auto, Snapdrag...
CVE-2020-11304HIGH7.1Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdrago...
CVE-2020-11298HIGH7While waiting for a response to a callback or listener request, non-secure clients can change permissions to shared memo...
CVE-2020-11292HIGH7.8Possible buffer overflow in voice service due to lack of input validation of parameters in QMI Voice API in Snapdragon A...
CVE-2020-11267HIGH7.8Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value ...
CVE-2020-11262HIGH7A race between command submission and destroying the context can cause an invalid context being added to the list leads ...
CVE-2020-11261HIGH7.8Memory corruption due to improper check to return error when user application requests memory allocation of a huge size ...
CVE-2020-11260HIGH8.4An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Sn...
CVE-2020-11259HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now