2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-27907HIGH7.8A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Securi...
CVE-2020-27899HIGH7.8A use after free issue was addressed with improved memory management. This issue is fixed in iOS 14.2 and iPadOS 14.2, m...
CVE-2020-27897HIGH7.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Sec...
CVE-2020-10015HIGH7.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Big Sur 11.1, Sec...
CVE-2020-11925HIGH8.8An issue was discovered in Luvion Grand Elite 3 Connect through 2020-02-25. Authentication to the device is based on a u...
CVE-2020-19613HIGH7.5Server Side Request Forgery (SSRF) vulnerability in saveUrlAs function in ImagesService.java in sunkaifei FlyCMS version...
CVE-2020-9147HIGH7.8A memory buffer error vulnerability exists in a component interface of Huawei Smartphone. Local attackers may exploit th...
CVE-2020-28173HIGH7.2Simple College Website 1.0 allows a user to conduct remote code execution via /alumni/admin/ajax.php?action=save_setting...
CVE-2020-24995HIGH7.8Buffer overflow vulnerability in sniff_channel_order function in aacdec_template.c in ffmpeg 3.1.2, allows attackers to ...
CVE-2020-15075HIGH7.1OpenVPN Connect installer for macOS version 3.2.6 and older may corrupt system critical files it should not have access ...
CVE-2020-19641HIGH8.8An issue was discovered in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B. Authenticated attackers with the "Op...
CVE-2020-19640HIGH7.5An issue was discovered in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B. An unauthenticated attacker can rebo...
CVE-2020-19639HIGH8.8Cross Site Request Forgery (CSRF) vulnerability in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B, via all fiel...
CVE-2020-35137HIGH7.5The MobileIron agents through 2021-03-22 for Android and iOS contain a hardcoded API key, used to communicate with the M...
CVE-2020-24635HIGH7.2A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP) products ...
CVE-2020-25217HIGH7.2Grandstream GRP261x VoIP phone running firmware version 1.0.3.6 (Base) allows Command Injection as root in its administr...
CVE-2020-7850HIGH7.8NBBDownloader.ocx ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded a...
CVE-2020-7468HIGH8.8In FreeBSD 12.2-STABLE before r365772, 11.4-STABLE before r365773, 12.1-RELEASE before p10, 11.4-RELEASE before p4 and 1...
CVE-2020-7467HIGH7.6In FreeBSD 12.2-STABLE before r365767, 11.4-STABLE before r365769, 12.1-RELEASE before p10, 11.4-RELEASE before p4 and 1...
CVE-2020-7461HIGH7.3In FreeBSD 12.1-STABLE before r365010, 11.4-STABLE before r365011, 12.1-RELEASE before p9, 11.4-RELEASE before p3, and 1...
CVE-2020-25582HIGH8.7In FreeBSD 12.2-STABLE before r369334, 11.4-STABLE before r369335, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 whe...
CVE-2020-25581HIGH7.5In FreeBSD 12.2-STABLE before r369312, 11.4-STABLE before r369313, 12.2-RELEASE before p4 and 11.4-RELEASE before p8 due...
CVE-2020-28695HIGH8.8Askey Fiber Router RTF3505VW-N1 BR_SV_g000_R3505VWN1001_s32_7 devices allow Remote Code Execution and retrieval of admin...
CVE-2020-28346HIGH7.5ACRN through 2.2 has a devicemodel/hw/pci/virtio/virtio.c NULL Pointer Dereference.
CVE-2020-10584HIGH7.5A directory traversal on the /admin/search_by.php script of Invigo Automatic Device Management (ADM) through 5.0 allows ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now