2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-0592MEDIUM6.7Out of bounds write in BIOS firmware for some Intel(R) Processors may allow an authenticated user to potentially enable ...
CVE-2020-0591MEDIUM6.7Improper buffer restrictions in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially en...
CVE-2020-0588MEDIUM6.7Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enabl...
CVE-2020-0587MEDIUM6.7Improper conditions check in BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enabl...
CVE-2020-0584MEDIUM6.2Buffer overflow in firmware for Intel(R) SSD DC P4800X and P4801X Series, Intel(R) Optane(TM) SSD 900P and 905P Series m...
CVE-2020-0575MEDIUM5.5Improper buffer restrictions in the Intel(R) Unite Client for Windows* before version 4.2.13064 may allow an authenticat...
CVE-2020-24443MEDIUM6.1Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an atta...
CVE-2020-24442MEDIUM6.1Adobe Connect version 11.0 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an atta...
CVE-2020-24441MEDIUM5.5Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created b...
CVE-2020-9128MEDIUM4.4FusionCompute versions 8.0.0 have an insecure encryption algorithm vulnerability. Attackers with high permissions can ex...
CVE-2020-25706MEDIUM6.1A cross-site scripting (XSS) vulnerability exists in templates_import.php (Cacti 1.2.13) due to Improper escaping of err...
CVE-2020-25658MEDIUM5.9It was found that python-rsa is vulnerable to Bleichenbacher timing attacks. An attacker can use this flaw via the RSA d...
CVE-2020-13954MEDIUM6.1By default, Apache CXF creates a /services page containing a listing of the available endpoint names and addresses. This...
CVE-2020-7333MEDIUM4.8Cross site scripting vulnerability in the firewall ePO extension of McAfee Endpoint Security (ENS) prior to 10.7.0 Novem...
CVE-2020-11209MEDIUM5.5Improper authorization in DSP process could allow unauthorized users to downgrade the library versions in SD820, SD821, ...
CVE-2020-11123MEDIUM5.5u'information disclosure in gatekeeper trustzone implementation as the throttling mechanism to prevent brute force attem...
CVE-2020-1999MEDIUM5.3A vulnerability exists in the Palo Alto Network PAN-OS signature-based threat detection engine that allows an attacker t...
CVE-2020-26221MEDIUM6.1touchbase.ai before version 2.0 is vulnerable to Cross-Site Scripting (XSS). The vulnerability allows an attacker to sen...
CVE-2020-26219MEDIUM6.1touchbase.ai before version 2.0 is vulnerable to Open Redirect. Impacts can be many, and vary from theft of information ...
CVE-2020-26218MEDIUM6.1touchbase.ai before version 2.0 is vulnerable to Cross-Site Scripting. The vulnerability allows an attacker to inject HT...
CVE-2020-8354MEDIUM6.7A potential vulnerability in the SMI callback function used in the VariableServiceSmm driver in some Lenovo Notebook mod...
CVE-2020-8353MEDIUM6.7Prior to August 10, 2020, some Lenovo Desktop and Workstation systems were shipped with the Embedded Host Based Configur...
CVE-2020-15275MEDIUM5.4MoinMoin is a wiki engine. In MoinMoin before version 1.9.11, an attacker with write permissions can upload an SVG file ...
CVE-2020-7767MEDIUM5.3All versions of package express-validators are vulnerable to Regular Expression Denial of Service (ReDoS) when validatin...
CVE-2020-1599MEDIUM5.5Windows Spoofing Vulnerability

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now