2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26215 | MEDIUM | 6.1 | 1.2% | Nov 18, 2020 | Jupyter Notebook before version 6.1.5 has an Open redirect vulnerability. A maliciously crafted link to a notebook serve... |
| CVE-2020-22723 | MEDIUM | 6.1 | 0.8% | Nov 18, 2020 | A cross-site scripting (XSS) vulnerability in Beijing Liangjing Zhicheng Technology Co., Ltd ljcmsshop version 1.14 allo... |
| CVE-2020-15300 | MEDIUM | 6.1 | 0.7% | Nov 18, 2020 | SuiteCRM through 7.11.13 has an Open Redirect in the Documents module via a crafted SVG document. |
| CVE-2020-14208 | MEDIUM | 5.4 | 0.6% | Nov 18, 2020 | SuiteCRM 7.11.13 is affected by stored Cross-Site Scripting (XSS) in the Documents preview functionality. This vulnerabi... |
| CVE-2020-13799 | MEDIUM | 6.8 | 0.3% | Nov 18, 2020 | Western Digital has identified a security vulnerability in the Replay Protected Memory Block (RPMB) protocol as specifie... |
| CVE-2020-25454 | MEDIUM | 5.4 | 0.7% | Nov 18, 2020 | Cross-site Scripting (XSS) vulnerability in grocy 2.7.1 via the add recipe module, which gets executed when deleting the... |
| CVE-2020-3482 | MEDIUM | 6.5 | 1.4% | Nov 18, 2020 | A vulnerability in the Traversal Using Relays around NAT (TURN) server component of Cisco Expressway software could allo... |
| CVE-2020-3471 | MEDIUM | 6.5 | 1.7% | Nov 18, 2020 | A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker ... |
| CVE-2020-3441 | MEDIUM | 5.3 | 1.5% | Nov 18, 2020 | A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker ... |
| CVE-2020-4592 | MEDIUM | 6.5 | 0.8% | Nov 18, 2020 | IBM MQ Appliance 9.1.CD and LTS could allow an authenticated user, under nondefault configuration to cause a data corrup... |
| CVE-2020-27126 | MEDIUM | 6.1 | 1.0% | Nov 18, 2020 | A vulnerability in an API of Cisco Webex Meetings could allow an unauthenticated, remote attacker to conduct cross-site ... |
| CVE-2020-26081 | MEDIUM | 6.1 | 0.8% | Nov 18, 2020 | Multiple vulnerabilities in the web UI of Cisco IoT Field Network Director (FND) could allow an unauthenticated, remote ... |
| CVE-2020-26080 | MEDIUM | 4.1 | 0.7% | Nov 18, 2020 | A vulnerability in the user management functionality of Cisco IoT Field Network Director (FND) could allow an authentica... |
| CVE-2020-26079 | MEDIUM | 4.9 | 1.0% | Nov 18, 2020 | A vulnerability in the web UI of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attacker to... |
| CVE-2020-26078 | MEDIUM | 6.5 | 1.4% | Nov 18, 2020 | A vulnerability in the file system of Cisco IoT Field Network Director (FND) could allow an authenticated, remote attack... |
| CVE-2020-26077 | MEDIUM | 4.3 | 0.7% | Nov 18, 2020 | A vulnerability in the access control functionality of Cisco IoT Field Network Director (FND) could allow an authenticat... |
| CVE-2020-26068 | MEDIUM | 6.5 | 0.7% | Nov 18, 2020 | A vulnerability in the xAPI service of Cisco Telepresence CE Software and Cisco RoomOS Software could allow an authentic... |
| CVE-2020-26933 | MEDIUM | 6 | 0.3% | Nov 18, 2020 | Trusted Computing Group (TCG) Trusted Platform Module Library Family 2.0 Library Specification Revisions 1.38 through 1.... |
| CVE-2020-26554 | MEDIUM | 6.1 | 1.0% | Nov 18, 2020 | REDDOXX MailDepot 2033 (aka 2.3.3022) allows XSS via an incoming HTML e-mail message. |
| CVE-2020-28005 | MEDIUM | 6.5 | 1.8% | Nov 18, 2020 | httpd on TP-Link TL-WPA4220 devices (hardware versions 2 through 4) allows remote authenticated users to trigger a buffe... |
| CVE-2020-26884 | MEDIUM | 6.1 | 0.8% | Nov 18, 2020 | RSA Archer 6.8 through 6.8.0.3 and 6.9 contains a URL injection vulnerability. An unauthenticated remote attacker could ... |
| CVE-2020-28724 | MEDIUM | 6.1 | 1.7% | Nov 18, 2020 | Open redirect vulnerability in werkzeug before 0.11.6 via a double slash in the URL. |
| CVE-2020-28361 | MEDIUM | 5.4 | 1.1% | Nov 18, 2020 | Kamailio before 5.4.0, as used in Sip Express Router (SER) in Sippy Softswitch 4.5 through 5.2 and other products, allow... |
| CVE-2020-24723 | MEDIUM | 4.8 | 1.0% | Nov 18, 2020 | Cross Site Scripting (XSS) vulnerability in the Registration page of the admin panel in PHPGurukul User Registration & L... |
| CVE-2020-28917 | MEDIUM | 6.5 | 0.5% | Nov 18, 2020 | An issue was discovered in the view_statistics (aka View frontend statistics) extension before 2.0.1 for TYPO3. It saves... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now