2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-23890 | MEDIUM | 5.5 | 0.7% | Nov 10, 2021 | A buffer overflow in WildBit Viewer v6.6 allows attackers to cause a denial of service (DoS) via a crafted JPG file. Rel... |
| CVE-2020-23889 | MEDIUM | 5.5 | 0.6% | Nov 10, 2021 | A User Mode Write AV starting at Editor!TMethodImplementationIntercept+0x4189c6 of WildBit Viewer v6.6 allows attackers ... |
| CVE-2020-23888 | MEDIUM | 5.5 | 0.7% | Nov 10, 2021 | A User Mode Write AV in Editor!TMethodImplementationIntercept+0x53f6c3 of WildBit Viewer v6.6 allows attackers to cause ... |
| CVE-2020-23887 | MEDIUM | 5.5 | 0.7% | Nov 10, 2021 | XnView MP v0.96.4 was discovered to contain a heap overflow which allows attackers to cause a denial of service (DoS) vi... |
| CVE-2020-23886 | MEDIUM | 5.5 | 0.9% | Nov 10, 2021 | XnView MP v0.96.4 was discovered to contain a heap overflow which allows attackers to cause a denial of service (DoS) vi... |
| CVE-2020-23884 | MEDIUM | 5.5 | 0.9% | Nov 10, 2021 | A buffer overflow in Nomacs v3.15.0 allows attackers to cause a denial of service (DoS) via a crafted MNG file. |
| CVE-2020-23879 | HIGH | 7.5 | 1.4% | Nov 10, 2021 | pdf2json v0.71 was discovered to contain a NULL pointer dereference in the component ObjectStream::getObject. |
| CVE-2020-23878 | CRITICAL | 9.8 | 1.7% | Nov 10, 2021 | pdf2json v0.71 was discovered to contain a stack buffer overflow in the component XRef::fetch. |
| CVE-2020-23877 | CRITICAL | 9.8 | 1.7% | Nov 10, 2021 | pdf2xml v2.0 was discovered to contain a stack buffer overflow in the component getObjectStream. |
| CVE-2020-23876 | HIGH | 7.5 | 1.4% | Nov 10, 2021 | pdf2xml v2.0 was discovered to contain a memory leak in the function TextPage::testLinkedText. |
| CVE-2020-23874 | CRITICAL | 9.8 | 2.1% | Nov 10, 2021 | pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::addAttributsNode. |
| CVE-2020-23873 | CRITICAL | 9.8 | 2.1% | Nov 10, 2021 | pdf2xml v2.0 was discovered to contain a heap-buffer overflow in the function TextPage::dump. |
| CVE-2020-23872 | HIGH | 7.5 | 1.4% | Nov 10, 2021 | A NULL pointer dereference in the function TextPage::restoreState of pdf2xml v2.0 allows attackers to cause a denial of ... |
| CVE-2020-28137 | MEDIUM | 6.5 | 0.5% | Nov 10, 2021 | Cross site request forgery (CSRF) in Genexis Platinum 4410 V2-1.28, allows attackers to cause a denial of service by con... |
| CVE-2020-12488 | MEDIUM | 5.5 | 0.2% | Nov 10, 2021 | The attacker can access the sensitive information stored within the jovi Smart Scene module by entering carefully constr... |
| CVE-2020-28419 | HIGH | 8.8 | 2.2% | Nov 9, 2021 | During installation with certain driver software or application packages an arbitrary code execution could occur. |
| CVE-2020-10054 | MEDIUM | 5.5 | 0.2% | Nov 9, 2021 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application do... |
| CVE-2020-10053 | MEDIUM | 5.5 | 0.1% | Nov 9, 2021 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application wr... |
| CVE-2020-10052 | MEDIUM | 5.5 | 0.2% | Nov 9, 2021 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.12). The affected application wr... |
| CVE-2020-23572 | HIGH | 8.8 | 1.3% | Nov 8, 2021 | BEESCMS v4.0 was discovered to contain an arbitrary file upload vulnerability via the component /admin/upload.php. This ... |
| CVE-2020-4160 | MEDIUM | 5.9 | 1.3% | Nov 8, 2021 | IBM QRadar Network Security 5.4.0 and 5.5.0 could allow a remote attacker to obtain sensitive information, caused by the... |
| CVE-2020-4153 | MEDIUM | 5.4 | 0.5% | Nov 8, 2021 | IBM QRadar Network Security 5.4.0 and 5.5.0 is vulnerable to cross-site scripting. This vulnerability allows users to em... |
| CVE-2020-4152 | MEDIUM | 5.9 | 0.6% | Nov 8, 2021 | IBM QRadar Network Security 5.4.0 and 5.5.0 transmits sensitive or security-critical data in cleartext in a communicatio... |
| CVE-2020-23130 | — | — | — | Nov 7, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-23129 | — | — | — | Nov 7, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now