2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-36867HIGH8.8Nagios XI versions prior to 5.7.3 contain a command injection vulnerability in the report PDF download/export functional...
CVE-2020-36863HIGH8.8Nagios XI versions prior to 5.7.2 allow PHP files to be uploaded to the Audio Import directory and executed from that lo...
CVE-2020-36859HIGH8.8The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.7 / Nagios XI 5.7.4 contains multiple SQL injection...
CVE-2020-36857HIGH7.2Nagios XI versions prior to 5.6.14 contain a post-authentication SQL injection vulnerability in the SNMP Trap Interface ...
CVE-2020-36856HIGH8.8Nagios XI versions prior to 5.6.14 contain an authenticated remote command execution vulnerability in the CCM command_te...
CVE-2020-36853HIGH7.2The 10WebMapBuilder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Plugin Settings Change in vers...
CVE-2020-9322HIGH8.8The /users endpoint in Statamic Core before 2.11.8 allows XSS to add an administrator user. This can be exploited via CS...
CVE-2020-36850HIGH8.7An information disclosure vulnerability exits in Sitecore JSS React Sample Application 11.0.0 - 14.0.1 that may cause pa...
CVE-2020-36848HIGH7.5The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Sens...
CVE-2020-36791HIGH7.1In the Linux kernel, the following vulnerability has been resolved: net_sched: keep alloc_hash updated after hash alloc...
CVE-2020-9295HIGH7.5FortiOS 6.2 running AV engine version 6.00142 and below, FortiOS 6.4 running AV engine version 6.00144 and below and For...
CVE-2020-23438HIGH7.8Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation.
CVE-2020-10095HIGH8.1Various Lexmark devices have CSRF that allows an attacker to modify the configuration of the device.
CVE-2020-8094HIGH7.8An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privi...
CVE-2020-9236HIGH8.8There is an improper interface design vulnerability in Huawei product. A module interface of the impated product does no...
CVE-2020-9222HIGH7.8There is a privilege escalation vulnerability in Huawei FusionCompute product. Due to insufficient verification on speci...
CVE-2020-9211HIGH7.2There is an out-of-bound read and write vulnerability in Huawei smartphone. A module dose not verify the input sufficien...
CVE-2020-9080HIGH7.8There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker c...
CVE-2020-13712HIGH7.8A command injection is possible through the user interface, allowing arbitrary command execution as the root user. oMG2...
CVE-2020-15934HIGH7.8An execution with unnecessary privileges vulnerability in the VCM engine of FortiClient for Linux versions 6.2.7 and bel...
CVE-2020-12820HIGH8.8Under non-default configuration, a stack-based buffer overflow in FortiOS version 6.0.10 and below, version 5.6.12 and b...
CVE-2020-12819HIGH7.5A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6...
CVE-2020-12487HIGH7Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make ...
CVE-2020-28398HIGH8.8A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio...
CVE-2020-3548HIGH7.5A vulnerability in the Transport Layer Security (TLS) protocol implementation of Cisco&nbsp;AsyncOS software for Cisco&n...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now