2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-13839 | CRITICAL | 9.8 | 0.9% | Jun 5, 2020 | An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 (MTK chipsets). Code execution can... |
| CVE-2020-13849 | HIGH | 7.5 | 2.0% | Jun 4, 2020 | The MQTT protocol 3.1.1 requires a server to set a timeout value of 1.5 times the Keep-Alive value specified by a client... |
| CVE-2020-13768 | CRITICAL | 9.8 | 2.1% | Jun 4, 2020 | In MiniShare before 1.4.2, there is a stack-based buffer overflow via an HTTP PUT request, which allows an attacker to a... |
| CVE-2020-13848 | HIGH | 7.5 | 3.5% | Jun 4, 2020 | Portable UPnP SDK (aka libupnp) 1.12.1 and earlier allows remote attackers to cause a denial of service (crash) via a cr... |
| CVE-2020-12853 | MEDIUM | 6.1 | 0.8% | Jun 4, 2020 | Pydio Cells 2.0.4 allows XSS. A malicious user can either upload or create a new file that contains potentially maliciou... |
| CVE-2020-12852 | MEDIUM | 6.8 | 2.4% | Jun 4, 2020 | The update feature for Pydio Cells 2.0.4 allows an administrator user to set a custom update URL and the public RSA key ... |
| CVE-2020-12851 | HIGH | 8.1 | 1.5% | Jun 4, 2020 | Pydio Cells 2.0.4 allows an authenticated user to write or overwrite existing files in another user’s personal and cells... |
| CVE-2020-12847 | HIGH | 7.2 | 1.7% | Jun 4, 2020 | Pydio Cells 2.0.4 web application offers an administrative console named “Cells Console” that is available to users with... |
| CVE-2020-11682 | MEDIUM | 6.5 | 0.6% | Jun 4, 2020 | Castel NextGen DVR v1.0.0 is vulnerable to CSRF in all state-changing request. A __RequestVerificationToken is set by th... |
| CVE-2020-11681 | HIGH | 8.1 | 1.1% | Jun 4, 2020 | Castel NextGen DVR v1.0.0 stores and displays credentials for the associated SMTP server in cleartext. Low privileged us... |
| CVE-2020-11680 | MEDIUM | 6.5 | 1.2% | Jun 4, 2020 | Castel NextGen DVR v1.0.0 is vulnerable to authorization bypass on all administrator functionality. The application fail... |
| CVE-2020-11679 | HIGH | 8.8 | 2.0% | Jun 4, 2020 | Castel NextGen DVR v1.0.0 is vulnerable to privilege escalation through the Adminstrator/Users/Edit/:UserId functionalit... |
| CVE-2020-7661 | HIGH | 7.5 | 2.7% | Jun 4, 2020 | all versions of url-regex are vulnerable to Regular Expression Denial of Service. An attacker providing a very long stri... |
| CVE-2020-13838 | LOW | 3.5 | 0.1% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. The DeX Lockscreen feature does not ... |
| CVE-2020-13837 | LOW | 3.5 | 0.1% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) software. The Lockscreen feature does not block Quick Pan... |
| CVE-2020-13836 | HIGH | 7.5 | 0.5% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. HWRResProvider allows path ... |
| CVE-2020-13835 | CRITICAL | 9.8 | 0.4% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with O(8.x) (with TEEGRIS) software. The Gatekeeper Trustlet allows a ... |
| CVE-2020-13834 | HIGH | 7.5 | 0.3% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (with TEEGRIS) software. Secure Folde... |
| CVE-2020-13833 | CRITICAL | 9.1 | 0.5% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The system area allows arbi... |
| CVE-2020-13832 | CRITICAL | 9.8 | 0.7% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) (with TEEGRIS on Exynos chipsets) software. The Widevine ... |
| CVE-2020-13831 | CRITICAL | 9.8 | 0.4% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with O(8.x) and P(9.0) (Exynos 7570 chipsets) software. The Trustonic ... |
| CVE-2020-13830 | HIGH | 7.5 | 0.4% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) software. One UI HOME logging can leak information. The Sa... |
| CVE-2020-13829 | HIGH | 7.5 | 0.3% | Jun 4, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Attackers can disable the SEAndroid ... |
| CVE-2020-10702 | MEDIUM | 5.5 | 0.3% | Jun 4, 2020 | A flaw was found in QEMU in the implementation of the Pointer Authentication (PAuth) support for ARM introduced in versi... |
| CVE-2020-9462 | MEDIUM | 4.3 | 0.3% | Jun 4, 2020 | An issue was discovered in all Athom Homey and Homey Pro devices up to the current version 4.2.0. An attacker within RF ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now