Skip to main content

Daily materialized evidence profile

Year 2020

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
18,322
CVEs with mentions
1,656
Total mentions
3,356
CVEs with KEV
146
CVEs with PoC
10

Attack vector counts

Network
12,770
Adjacent network
768
Local
4,485
Physical
299

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2020-1472

Published Aug 17, 2020

An elevation of privilege vulnerability exists when an attacker establishes a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Proto…

CVSS 5.5 · Medium
evidence mentions
82
Buzz score
81.3
KEV listedPublic PoC observed

CVE-2020-3452

Published Jul 22, 2020

A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated,…

CVSS 7.5 · High
evidence mentions
15
Buzz score
77.7
KEV listedPublic PoC observed

CVE-2020-10189

Published Mar 6, 2020

Zoho ManageEngine Desktop Central before 10.0.474 allows remote code execution because of deserialization of untrusted data in getChartImage in the FileStorage class. This is rela…

CVSS 9.8 · Critical
evidence mentions
20
Buzz score
74.5
KEV listed

CVE-2020-0688

Published Feb 11, 2020

A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle objects in memory, aka 'Microsoft Exchange Memory Corruption…

CVSS 8.8 · High
evidence mentions
50
Buzz score
72.5
KEV listed

CVE-2020-8515

Published Feb 1, 2020

DrayTek Vigor2960 1.3.1_Beta, Vigor3900 1.4.4_Beta, and Vigor300B 1.3.3_Beta, 1.4.2.1_Beta, and 1.4.4_Beta devices allow remote code execution as root (without authentication) via…

CVSS 9.8 · Critical
evidence mentions
26
Buzz score
72.5
KEV listed