2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-5793HIGH7.8A vulnerability in Nessus versions 8.9.0 through 8.12.0 for Windows & Nessus Agent 8.0.0 and 8.1.0 for Windows could all...
CVE-2020-24437HIGH7.8Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) a...
CVE-2020-24436HIGH7.8Acrobat Pro DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are ...
CVE-2020-24435HIGH7.8Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) a...
CVE-2020-24433HIGH7.8Adobe Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earl...
CVE-2020-24432HIGH7.8Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) a...
CVE-2020-24430HIGH7.8Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) a...
CVE-2020-24429HIGH7.8Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) f...
CVE-2020-24428HIGH7.7Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) f...
CVE-2020-13661HIGH8.8Telerik Fiddler through 5.0.20202.18177 allows attackers to execute arbitrary programs via a hostname with a trailing sp...
CVE-2020-12147HIGH8.8In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can make unautho...
CVE-2020-12146HIGH8.8In Silver Peak Unity Orchestrator versions prior to 8.9.11+, 8.10.11+, or 9.0.1+, an authenticated user can access, modi...
CVE-2020-26507HIGH7.8A CSV Injection (also known as Formula Injection) vulnerability in the Marmind web application with version 4.1.141.0 al...
CVE-2020-25399HIGH7.8Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malic...
CVE-2020-25398HIGH8.8CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.
CVE-2020-28115HIGH8.8SQL Injection vulnerability in "Documents component" found in AudimexEE version 14.1.0 allows an attacker to execute arb...
CVE-2020-27688HIGH7.5RVToolsPasswordEncryption.exe in RVTools 4.0.6 allows users to encrypt passwords to be used in the configuration files. ...
CVE-2020-27402HIGH7.8The HK1 Box S905X3 TV Box contains a vulnerability that allows a local unprivileged user to escalate to root using the /...
CVE-2020-24849HIGH8.8A remote code execution vulnerability is identified in FruityWifi through 2.4. Due to improperly escaped shell metachara...
CVE-2020-15950HIGH8.8Immuta v2.8.2 is affected by improper session management: user sessions are not revoked upon logout.
CVE-2020-15949HIGH7.5Immuta v2.8.2 is affected by one instance of insecure permissions that can lead to user account takeover.
CVE-2020-7763HIGH7.5This affects the package phantom-html-to-pdf before 0.6.1.
CVE-2020-27387HIGH8.8An unrestricted file upload issue in HorizontCMS through 1.0.0-beta allows an authenticated remote attacker (with access...
CVE-2020-25201HIGH7.5HashiCorp Consul Enterprise version 1.7.0 up to 1.8.4 includes a namespace replication bug which can be triggered to cau...
CVE-2020-26207HIGH8DatabaseSchemaViewer before version 2.7.4.3 is vulnerable to arbitrary code execution if a user is tricked into opening ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now