2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-1986MEDIUM5.5Improper input validation vulnerability in Secdo allows an authenticated local user with 'create folders or append data'...
CVE-2020-1985HIGH7.8Incorrect Default Permissions on C:\Programdata\Secdo\Logs folder in Secdo allows local authenticated users to overwrite...
CVE-2020-1984HIGH7.8Secdo tries to execute a script at a hardcoded path if present, which allows a local authenticated user with 'create fol...
CVE-2020-1978MEDIUM4.4TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high ...
CVE-2020-10981MEDIUM4.3GitLab EE/CE 9.0 to 12.9 allows a maintainer to modify other maintainers' pipeline trigger descriptions within the same ...
CVE-2020-10980CRITICAL9.8GitLab EE/CE 8.0.rc1 to 12.9 is vulnerable to a blind SSRF in the FogBugz integration.
CVE-2020-10979MEDIUM4.3GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipelines metrics to unauthorized users.
CVE-2020-10978MEDIUM5.3GitLab EE/CE 8.11 to 12.9 is leaking information on Issues opened in a public project and then moved to a private projec...
CVE-2020-10977MEDIUM5.5GitLab EE/CE 8.5 to 12.9 is vulnerable to a an path traversal when moving an issue between projects.
CVE-2020-10976HIGH7.5GitLab EE/CE 8.17 to 12.9 is vulnerable to information leakage when querying a merge request widget.
CVE-2020-10975MEDIUM4.3GitLab EE/CE 10.8 to 12.9 is leaking metadata and comments on vulnerabilities to unauthorized users on the vulnerability...
CVE-2020-10814MEDIUM5.5A buffer overflow vulnerability in Code::Blocks 17.12 allows an attacker to execute arbitrary code via a crafted project...
CVE-2020-11576MEDIUM5.3Fixed in v1.5.1, Argo version v1.5.0 was vulnerable to a user-enumeration vulnerability which allowed attackers to deter...
CVE-2020-10263MEDIUM6.8An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.52.4. Attackers can get root shell by accessing the UART int...
CVE-2020-10262MEDIUM6.8An issue was discovered on XIAOMI XIAOAI speaker Pro LX06 1.58.10. Attackers can activate the failsafe mode during the b...
CVE-2020-11000MEDIUM6.5GreenBrowser before version 1.2 has a vulnerability where apps that rely on URL Parsing to verify that a given URL is po...
CVE-2020-11607MEDIUM5.3An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Notification exposure occurs in Lock...
CVE-2020-11606LOW2.4An issue was discovered on Samsung mobile devices with Q(10.0) software. Information about application preview (in the S...
CVE-2020-11605HIGH7.5An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. There is sensitive informat...
CVE-2020-11604CRITICAL9.1An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. There is an ...
CVE-2020-11603CRITICAL9.8An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (incorporating TEEGRIS) software. Type confusi...
CVE-2020-11602LOW2.4An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Google Assistant leaks clipboard con...
CVE-2020-11601MEDIUM5.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. There is unauthorized access to appl...
CVE-2020-11600CRITICAL9.8An issue was discovered on Samsung mobile devices with Q(10.0) software. There is arbitrary code execution in the Finger...
CVE-2020-4291MEDIUM4.3IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, and 1.0.5 could disclose sensitive information ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now