2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-11258HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to Trustzone BSP in Snapdragon Wired Infrastruct...
CVE-2020-11257HIGH8.8Memory corruption due to lack of validation of pointer arguments passed to TrustZone BSP in Snapdragon Wired Infrastruct...
CVE-2020-11256HIGH8.8Memory corruption due to lack of check of validation of pointer to buffer passed to trustzone in Snapdragon Wired Infras...
CVE-2020-11250HIGH7Use after free due to race condition when reopening the device driver repeatedly in Snapdragon Auto, Snapdragon Compute,...
CVE-2020-11241HIGH7.5Out of bound read will happen if EAPOL Key length is less than expected while processing NAN shared key descriptor attri...
CVE-2020-11240HIGH7.8Memory corruption due to ioctl command size was incorrectly set to the size of a pointer and not enough storage is alloc...
CVE-2020-11239HIGH7.8Use after free issue when importing a DMA buffer by using the CPU address of the buffer due to attachment is not cleaned...
CVE-2020-11238HIGH7.5Possible Buffer over-read in ARP/NS parsing due to lack of check of packet length received in Snapdragon Auto, Snapdrago...
CVE-2020-11235HIGH7.8Buffer overflow might occur while parsing unified command due to lack of check of input data received in Snapdragon Auto...
CVE-2020-11233HIGH7Time-of-check time-of-use race condition While processing partition entries due to newly created buffer was read again f...
CVE-2020-11178HIGH7.8Trusted APPS to overwrite the CPZ memory of another use-case as TZ only checks the physical address not overlapping with...
CVE-2020-11165HIGH7.8Memory corruption due to buffer overflow while copying the message provided by HLOS into buffer without validating the l...
CVE-2020-11161HIGH7.1Out-of-bounds memory access can occur while calculating alignment requirements for a negative width from external compon...
CVE-2020-26516HIGH8.8A CSRF issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. Requests sent to the server that trigger ac...
CVE-2020-26515HIGH7.5An insufficiently protected credentials issue was discovered in Intland codeBeamer ALM 10.x through 10.1.SP4. The rememb...
CVE-2020-25716HIGH8.1A flaw was found in Cloudforms. A role-based privileges escalation flaw where export or import of administrator files is...
CVE-2020-36387HIGH7.8An issue was discovered in the Linux kernel before 5.8.2. fs/io_uring.c has a use-after-free related to io_async_task_fu...
CVE-2020-36386HIGH7.1An issue was discovered in the Linux kernel before 5.8.1. net/bluetooth/hci_event.c has a slab out-of-bounds read in hci...
CVE-2020-1742HIGH7An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacke...
CVE-2020-18265HIGH8.8Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary cod...
CVE-2020-18264HIGH8.8Cross Site Request Forgery (CSRF) in Simple-Log v1.6 allows remote attackers to gain privilege and execute arbitrary cod...
CVE-2020-36385HIGH7.8An issue was discovered in the Linux kernel before 5.10. drivers/infiniband/core/ucma.c has a use-after-free because the...
CVE-2020-29324HIGH7.5The DLink Router DIR-895L MFC v1.21b05 is vulnerable to credentials disclosure in telnet service through decompilation o...
CVE-2020-29323HIGH7.5The D-link router DIR-885L-MFC 1.15b02, v1.21b05 is vulnerable to credentials disclosure in telnet service through decom...
CVE-2020-29322HIGH7.5The D-Link router DIR-880L 1.07 is vulnerable to credentials disclosure in telnet service through decompilation of firmw...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now