2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-16962HIGH7.8Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2020-16961HIGH7.8Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2020-16960HIGH7.8Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2020-16959HIGH7.8Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2020-16958HIGH7.8Windows Backup Engine Elevation of Privilege Vulnerability
CVE-2020-10143HIGH7.8Macrium Reflect includes an OpenSSL component that specifies an OPENSSLDIR variable as C:\openssl\. Macrium Reflect cont...
CVE-2020-25499HIGH8.8TOTOLINK A3002RU-V2.0.0 B20190814.1034 allows authenticated remote users to modify the system's 'Run Command'. An attack...
CVE-2020-16600HIGH7.8A Use After Free vulnerability exists in Artifex Software, Inc. MuPDF library 1.17.0-rc1 and earlier when a valid page w...
CVE-2020-28086HIGH7.5pass through 1.7.3 has a possibility of using a password for an unintended resource. For exploitation to occur, the user...
CVE-2020-2049HIGH7.8A local privilege escalation vulnerability exists in Palo Alto Networks Cortex XDR Agent on the Windows platform that al...
CVE-2020-7787HIGH8.2This affects all versions of package react-adal. It is possible for a specially crafted JWT token and request URL can ca...
CVE-2020-29661HIGH7.8A locking issue was discovered in the tty subsystem of the Linux kernel through 5.9.13. drivers/tty/tty_jobctrl.c allows...
CVE-2020-26832HIGH7.6SAP AS ABAP (SAP Landscape Transformation), versions - 2011_1_620, 2011_1_640, 2011_1_700, 2011_1_710, 2011_1_730, 2011_...
CVE-2020-26830HIGH8.1SAP Solution Manager 7.2 (User Experience Monitoring), version - 7.2, does not perform necessary authorization checks fo...
CVE-2020-26261HIGH7.9jupyterhub-systemdspawner enables JupyterHub to spawn single-user notebook servers using systemd. In jupyterhub-systemds...
CVE-2020-25199HIGH7.8A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when p...
CVE-2020-23520HIGH7.2imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality.
CVE-2020-29656HIGH7.5An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloa...
CVE-2020-29655HIGH7.5An injection vulnerability exists in RT-AC88U Download Master before 3.1.0.108. Accessing Main_Login.asp?flag=1&productn...
CVE-2020-29651HIGH7.5A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be u...
CVE-2020-26970HIGH8.8When reading SMTP server status codes, Thunderbird writes an integer value to a position on the stack that is intended t...
CVE-2020-26969HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 82. Some of these bugs showed evidence of memory corru...
CVE-2020-26968HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox ESR 78.4. Some of these bugs showed evi...
CVE-2020-26960HIGH8.8If the Compact() method was called on an nsTArray, the array could have been reallocated without updating other pointers...
CVE-2020-26959HIGH8.8During browser shutdown, reference decrementing could have occured on a previously freed object, resulting in a use-afte...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now