2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-24667 | HIGH | 8.8 | 1.0% | Jun 10, 2021 | Trace Financial CRESTBridge <6.3.0.02 contains an authenticated SQL injection vulnerability, which was fixed in 6.3.0.03... |
| CVE-2020-35452 | HIGH | 7.3 | 53.2% | Jun 10, 2021 | Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Digest nonce can cause a stack overflow in mod_auth_dige... |
| CVE-2020-13950 | HIGH | 7.5 | 49.1% | Jun 10, 2021 | Apache HTTP Server versions 2.4.41 to 2.4.46 mod_proxy_http can be made to crash (NULL pointer dereference) with special... |
| CVE-2020-24489 | HIGH | 8.8 | 0.4% | Jun 9, 2021 | Incomplete cleanup in some Intel(R) VT-d products may allow an authenticated user to potentially enable escalation of pr... |
| CVE-2020-24474 | HIGH | 8 | 0.4% | Jun 9, 2021 | Buffer overflow in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before version 2... |
| CVE-2020-24473 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Out of bounds write in the BMC firmware for some Intel(R) Server Boards, Server Systems and Compute Modules before versi... |
| CVE-2020-8702 | HIGH | 7.3 | 0.3% | Jun 9, 2021 | Uncontrolled search path element in the Intel(R) Processor Diagnostic Tool before version 4.1.5.37 may allow an authenti... |
| CVE-2020-27383 | HIGH | 7.8 | 0.3% | Jun 9, 2021 | Battle.net.exe in Battle.Net 1.27.1.12428 suffers from an elevation of privileges vulnerability which can be used by an ... |
| CVE-2020-12360 | HIGH | 7.8 | 0.3% | Jun 9, 2021 | Out of bounds read in the firmware for some Intel(R) Processors may allow an authenticated user to potentially enable es... |
| CVE-2020-15387 | HIGH | 7.4 | 0.5% | Jun 9, 2021 | The host SSH servers of Brocade Fabric OS before Brocade Fabric OS v7.4.2h, v8.2.1c, v8.2.2, v9.0.0, and Brocade SANnav ... |
| CVE-2020-15380 | HIGH | 7.5 | 1.0% | Jun 9, 2021 | Brocade SANnav before version 2.1.1 logs account credentials at the ‘trace’ logging level. |
| CVE-2020-15379 | HIGH | 7.5 | 1.3% | Jun 9, 2021 | Brocade SANnav before v.2.1.0a could allow remote attackers cause a denial-of-service condition due to a lack of proper ... |
| CVE-2020-27384 | HIGH | 7.8 | 0.3% | Jun 9, 2021 | The Gw2-64.exe in Guild Wars 2 launcher version 106916 suffers from an elevation of privileges vulnerability which can b... |
| CVE-2020-15383 | HIGH | 7.5 | 1.0% | Jun 9, 2021 | Running security scans against the SAN switch can cause config and secnotify processes within the firmware before Brocad... |
| CVE-2020-15382 | HIGH | 7.2 | 0.9% | Jun 9, 2021 | Brocade SANnav before version 2.1.1 uses a hard-coded administrator account with the weak password ‘passw0rd’ if a passw... |
| CVE-2020-15381 | HIGH | 7.5 | 1.0% | Jun 9, 2021 | Brocade SANnav before version 2.1.1 contains an Improper Authentication vulnerability that allows cleartext transmission... |
| CVE-2020-11306 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Possible integer overflow in RPMB counter due to lack of length check on user provided data in Snapdragon Auto, Snapdrag... |
| CVE-2020-11304 | HIGH | 7.1 | 0.2% | Jun 9, 2021 | Possible out of bound read in DRM due to improper buffer length check. in Snapdragon Auto, Snapdragon Compute, Snapdrago... |
| CVE-2020-11298 | HIGH | 7 | 0.1% | Jun 9, 2021 | While waiting for a response to a callback or listener request, non-secure clients can change permissions to shared memo... |
| CVE-2020-11292 | HIGH | 7.8 | 0.8% | Jun 9, 2021 | Possible buffer overflow in voice service due to lack of input validation of parameters in QMI Voice API in Snapdragon A... |
| CVE-2020-11267 | HIGH | 7.8 | 0.2% | Jun 9, 2021 | Stack out-of-bounds write occurs while setting up a cipher device if the provided IV length exceeds the max limit value ... |
| CVE-2020-11262 | HIGH | 7 | 0.1% | Jun 9, 2021 | A race between command submission and destroying the context can cause an invalid context being added to the list leads ... |
| CVE-2020-11261 | HIGH | 7.8 | 1.8% | Jun 9, 2021 | Memory corruption due to improper check to return error when user application requests memory allocation of a huge size ... |
| CVE-2020-11260 | HIGH | 8.4 | 0.2% | Jun 9, 2021 | An improper free of uninitialized memory can occur in DIAG services in Snapdragon Compute, Snapdragon Industrial IOT, Sn... |
| CVE-2020-11259 | HIGH | 8.8 | 0.2% | Jun 9, 2021 | Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now