2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-10068MEDIUM6.5In the Zephyr project Bluetooth subsystem, certain duplicate and back-to-back packets can cause incorrect behavior, resu...
CVE-2020-10063HIGH7.5A remote adversary with the ability to send arbitrary CoAP packets to be parsed by Zephyr is able to cause a denial of s...
CVE-2020-10062CRITICAL9.8An off-by-one error in the Zephyr project MQTT packet length decoder can result in memory corruption and possible remote...
CVE-2020-10061HIGH8.8Improper handling of the full-buffer case in the Zephyr Bluetooth implementation can result in memory corruption. This i...
CVE-2020-8555MEDIUM6.3The Kubernetes kube-controller-manager in versions v1.0-1.14, versions prior to v1.15.12, v1.16.9, v1.17.5, and version ...
CVE-2020-8103HIGH7.1A vulnerability in the improper handling of symbolic links in Bitdefender Antivirus Free can allow an unprivileged user ...
CVE-2020-4450CRITICAL9.8IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote attacker to execute arbitrary code on the ...
CVE-2020-4449HIGH7.5IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 traditional could allow a remote attacker to obtain sensitive in...
CVE-2020-4448CRITICAL9.8IBM WebSphere Application Server Network Deployment 7.0, 8.0, 8.5, and 9.0 could allow a remote attacker to execute arbi...
CVE-2020-4229HIGH7.3IBM Worklight/MobileFoundation 8.0.0.0 does not properly invalidate session cookies when a user logs out of a session, w...
CVE-2020-13816Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-13817. Reason: This candidate is a reservation d...
CVE-2020-9859HIGH7.8A memory consumption issue was addressed with improved memory handling. This issue is fixed in iOS 13.5.1 and iPadOS 13....
CVE-2020-9074MEDIUM5.3Huawei Smartphones HONOR 20 PRO;Honor View 20;HONOR 20 have an improper handling of exceptional condition Vulnerability....
CVE-2020-1883MEDIUM4.9Huawei products NIP6800;Secospace USG6600;USG9500 have a memory leak vulnerability. An attacker with high privileges exp...
CVE-2020-12723HIGH7.5regcomp.c in Perl before 5.30.3 allows a buffer overflow via a crafted regular expression because of recursive S_study_c...
CVE-2020-11975CRITICAL9.8Apache Unomi allows conditions to use OGNL scripting which offers the possibility to call static Java classes from the J...
CVE-2020-11492HIGH7.8An issue was discovered in Docker Desktop through 2.2.0.5 on Windows. If a local attacker sets up their own named pipe p...
CVE-2020-10878HIGH8.6Perl before 5.30.3 has an integer overflow related to mishandling of a "PL_regkind[OP(n)] == NOTHING" situation. A craft...
CVE-2020-10543HIGH8.2Perl before 5.30.3 on 32-bit platforms allows a heap-based buffer overflow because nested regular expression quantifiers...
CVE-2020-12849MEDIUM5.4Pydio Cells 2.0.4 allows any user to upload a profile image to the web application, including standard and shared user r...
CVE-2020-12848MEDIUM5.4In Pydio Cells 2.0.4, once an authenticated user shares a file selecting the create a public link option, a hidden share...
CVE-2020-13843MEDIUM5.5An issue was discovered on LG mobile devices with Android OS software before 2020-06-01. Local users can cause a denial ...
CVE-2020-13842HIGH7.8An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). A dangerous AT com...
CVE-2020-13841CRITICAL9.8An issue was discovered on LG mobile devices with Android OS 9 and 10 (MTK chipsets). An AT command handler allows attac...
CVE-2020-13840CRITICAL9.8An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now