2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-5833LOW3.3Symantec Endpoint Protection Manager, prior to 14.3, may be susceptible to an out of bounds vulnerability, which is a ty...
CVE-2020-12790HIGH7.5In the SEOmatic plugin before 3.2.49 for Craft CMS, helpers/DynamicMeta.php does not properly sanitize the URL. This lea...
CVE-2020-1962Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2020-12785HIGH8.1cPanel before 86.0.14 allows attackers to obtain access to the current working directory via the account backup feature ...
CVE-2020-12784MEDIUM5.3cPanel before 86.0.14 allows remote attackers to trigger a bandwidth suspension via mail log strings (SEC-505).
CVE-2020-12760HIGH8.8An issue was discovered in OpenNMS Horizon before 26.0.1, and Meridian before 2018.1.19 and 2019 before 2019.1.7. The Ac...
CVE-2020-12754HIGH7.8An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. A crafted application ca...
CVE-2020-12753CRITICAL9.8An issue was discovered on LG mobile devices with Android OS 7.2, 8.0, 8.1, 9, and 10 software. Arbitrary code execution...
CVE-2020-12752HIGH7.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (with TEEGRIS) software. Attackers can determi...
CVE-2020-12751HIGH7.8An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) software. The Quram image codec libra...
CVE-2020-12750HIGH7.5An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass Factory Reset Protection (...
CVE-2020-12749HIGH7.8An issue was discovered on Samsung mobile devices with P(9.0) (Exynos chipsets) software. The S.LSI Wi-Fi drivers have a...
CVE-2020-12748MEDIUM5.3An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protectio...
CVE-2020-12747CRITICAL9.8An issue was discovered on Samsung mobile devices with Q(10.0) (Exynos980 9630 and Exynos990 9830 chipsets) software. Th...
CVE-2020-12746CRITICAL9.8An issue was discovered on Samsung mobile devices with O(8.X), P(9.0), and Q(10.0) (Exynos chipsets) software. Attackers...
CVE-2020-12745HIGH7.5An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can bypass the locked-state protectio...
CVE-2020-12650Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-11866HIGH7.8libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows a use-after-free.
CVE-2020-11865HIGH7.8libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows out-of-bounds memory access.
CVE-2020-11864MEDIUM5.5libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 2 of 2).
CVE-2020-11863MEDIUM5.5libEMF (aka ECMA-234 Metafile Library) through 1.0.11 allows denial of service (issue 1 of 2).
CVE-2020-11108HIGH8.8The Gravity updater in Pi-hole through 4.4 allows an authenticated adversary to upload arbitrary files. This can be abus...
CVE-2020-1698MEDIUM5.5A flaw was found in keycloak in versions before 9.0.0. A logged exception in the HttpMethod class may leak the password ...
CVE-2020-12783HIGH7.5Exim through 4.93 has an out-of-bounds read in the SPA authenticator that could result in SPA/NTLM authentication bypass...
CVE-2020-10685MEDIUM5.5A flaw was found in Ansible Engine affecting Ansible Engine versions 2.7.x before 2.7.17 and 2.8.x before 2.8.11 and 2.9...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now