2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11524 | MEDIUM | 6.6 | 1.8% | May 15, 2020 | libfreerdp/codec/interleaved.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. |
| CVE-2020-11523 | MEDIUM | 6.6 | 2.0% | May 15, 2020 | libfreerdp/gdi/region.c in FreeRDP versions > 1.0 through 2.0.0-rc4 has an Integer Overflow. |
| CVE-2020-11522 | MEDIUM | 6.5 | 2.7% | May 15, 2020 | libfreerdp/gdi/gdi.c in FreeRDP > 1.0 through 2.0.0-rc4 has an Out-of-bounds Read. |
| CVE-2020-11521 | MEDIUM | 6.6 | 1.9% | May 15, 2020 | libfreerdp/codec/planar.c in FreeRDP version > 1.0 through 2.0.0-rc4 has an Out-of-bounds Write. |
| CVE-2020-7809 | MEDIUM | 6.1 | 0.6% | May 15, 2020 | ALSong 3.46 and earlier version contain a Document Object Model (DOM) based cross-site scripting vulnerability caused by... |
| CVE-2020-9073 | LOW | 2.4 | 0.2% | May 15, 2020 | Huawei P20 smartphones with versions earlier than 10.0.0.156(C00E156R1P4) have an improper authentication vulnerability.... |
| CVE-2020-3810 | MEDIUM | 5.5 | 1.3% | May 15, 2020 | Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service whe... |
| CVE-2020-1808 | HIGH | 7.1 | 0.5% | May 15, 2020 | Honor 20;HONOR 20 PRO;Honor Magic2;HUAWEI Mate 20 X;HUAWEI P30;HUAWEI P30 Pro;Honor View 20 smartphones with versions ea... |
| CVE-2020-10744 | MEDIUM | 5 | 0.3% | May 15, 2020 | An incomplete fix was found for the fix of the flaw CVE-2020-1733 ansible: insecure temporary directory when running bec... |
| CVE-2020-8100 | HIGH | 7.5 | 1.0% | May 15, 2020 | Improper Input Validation vulnerability in the cevakrnl.rv0 module as used in the Bitdefender Engines allows an attacker... |
| CVE-2020-12882 | MEDIUM | 5.4 | 1.2% | May 15, 2020 | Submitty through 20.04.01 allows XSS via upload of an SVG document, as demonstrated by an attack by a Student against a ... |
| CVE-2020-11931 | LOW | 3.3 | 0.3% | May 15, 2020 | An Ubuntu-specific modification to Pulseaudio to provide security mediation for Snap-packaged applications was found to ... |
| CVE-2020-12440 | — | — | — | May 14, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-12068 | MEDIUM | 6.5 | 0.9% | May 14, 2020 | An issue was discovered in CODESYS Development System before 3.5.16.0. CODESYS WebVisu and CODESYS Remote TargetVisu are... |
| CVE-2020-12046 | MEDIUM | 5.7 | 0.5% | May 14, 2020 | Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC’s firmware files’ signatures are not verified upon firmware updat... |
| CVE-2020-12042 | MEDIUM | 6.5 | 0.5% | May 14, 2020 | Opto 22 SoftPAC Project Version 9.6 and prior. Paths specified within the zip files used to update the SoftPAC firmware ... |
| CVE-2020-10620 | CRITICAL | 9.8 | 1.2% | May 14, 2020 | Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC communication does not include any credentials. This allows an at... |
| CVE-2020-10616 | HIGH | 8.8 | 1.7% | May 14, 2020 | Opto 22 SoftPAC Project Version 9.6 and prior. SoftPAC does not specify the path of multiple imported .dll files. Theref... |
| CVE-2020-10612 | CRITICAL | 9.1 | 1.1% | May 14, 2020 | Opto 22 SoftPAC Project Version 9.6 and prior. SoftPACAgent communicates with SoftPACMonitor over network Port 22000. Ho... |
| CVE-2020-0221 | CRITICAL | 9.8 | 0.5% | May 14, 2020 | Airbrush FW's scratch memory allocator is susceptible to numeric overflow. When the overflow occurs, the next allocation... |
| CVE-2020-0220 | MEDIUM | 6.7 | 0.1% | May 14, 2020 | In crus_afe_callback of msm-cirrus-playback.c, there is a possible out of bounds write due to a missing bounds check. Th... |
| CVE-2020-0110 | HIGH | 7.8 | 0.2% | May 14, 2020 | In psi_write of psi.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local e... |
| CVE-2020-0109 | HIGH | 7.8 | 0.1% | May 14, 2020 | In simulatePackageSuspendBroadcast of NotificationManagerService.java, there is a missing permission check. This could l... |
| CVE-2020-0106 | MEDIUM | 5.5 | 0.1% | May 14, 2020 | In getCellLocation of PhoneInterfaceManager.java, there is a possible permission bypass due to a missing SDK version che... |
| CVE-2020-0105 | HIGH | 7.8 | 0.1% | May 14, 2020 | In onKeyguardVisibilityChanged of key_store_service.cpp, there is a missing permission check. This could lead to local e... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now