2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:LOWClear
CVE IDSeverityCVSSDescription
CVE-2020-15469LOW2.3In QEMU 4.2.0, a MemoryRegionOps object may lack read/write callback methods, leading to a NULL pointer dereference.
CVE-2020-2218LOW3.3Jenkins HP ALM Quality Center Plugin 1.6 and earlier stores a password unencrypted in its global configuration file on t...
CVE-2020-12039LOW2.4Baxter Sigma Spectrum Infusion Pumps Sigma Spectrum Infusion System v's6.x model 35700BAX & Baxter Spectrum Infusion Sys...
CVE-2020-9558LOW3.3Adobe Bridge versions 10.0.1 and earlier version have an out-of-bounds read vulnerability. Successful exploitation could...
CVE-2020-9553LOW3.3Adobe Bridge versions 10.0.1 and earlier version have an out-of-bounds read vulnerability. Successful exploitation could...
CVE-2020-9626LOW3.3Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have an out-of-bounds read vulnerability. Successful e...
CVE-2020-3970LOW3.8VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), ...
CVE-2020-15005LOW3.1In MediaWiki before 1.31.8, 1.32.x and 1.33.x before 1.33.4, and 1.34.x before 1.34.2, private wikis behind a caching se...
CVE-2020-4071LOW2.4In django-basic-auth-ip-whitelist before 0.3.4, a potential timing attack exists on websites where the basic authenticat...
CVE-2020-13261LOW2.7Amazon EKS credentials disclosure in GitLab CE/EE 12.6 and later through 13.0.1 allows other administrators to view Amaz...
CVE-2020-3972LOW3.3VMware Tools for macOS (11.x.x and prior before 11.1.1) contains a denial-of-service vulnerability in the Host-Guest Fil...
CVE-2020-6752LOW3.8In OMERO before 5.6.1, group owners can access members' data in other groups.
CVE-2020-4050LOW3.1In affected versions of WordPress, misuse of the `set-screen-option` filter's return value allows arbitrary user meta fi...
CVE-2020-4049LOW2.4In affected versions of WordPress, when uploading themes, the name of the theme folder can be crafted in a way that coul...
CVE-2020-3930LOW3.3GeoVision Door Access Control device family improperly stores and controls access to system logs, any users can read the...
CVE-2020-9848LOW2.4An authorization issue was addressed with improved state management. This issue is fixed in iOS 13.5 and iPadOS 13.5. A ...
CVE-2020-13838LOW3.5An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. The DeX Lockscreen feature does not ...
CVE-2020-13837LOW3.5An issue was discovered on Samsung mobile devices with Q(10.0) software. The Lockscreen feature does not block Quick Pan...
CVE-2020-5297LOW2.7In OctoberCMS (october/october composer package) versions from 1.0.319 and before 1.0.466, an attacker can exploit this ...
CVE-2020-3322LOW3.3A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an atta...
CVE-2020-3321LOW3.3A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an atta...
CVE-2020-3319LOW3.3A vulnerability in Cisco Webex Network Recording Player and Cisco Webex Player for Microsoft Windows could allow an atta...
CVE-2020-13597LOW3.5Clusters using Calico (version 3.14.0 and below), Calico Enterprise (version 2.8.2 and below), may be vulnerable to info...
CVE-2020-13659LOW2.5address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer.
CVE-2020-1831LOW2.4HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.195(SP31C00E74R3P8) have an improper authorization vulnerab...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now