2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26083 | MEDIUM | 4.8 | 0.6% | Nov 6, 2020 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2020-8577 | MEDIUM | 5.9 | 1.0% | Nov 6, 2020 | SANtricity OS Controller Software versions 11.50.1 and higher are susceptible to a vulnerability which could allow an at... |
| CVE-2020-5795 | MEDIUM | 6.2 | 1.0% | Nov 6, 2020 | UNIX Symbolic Link (Symlink) Following in TP-Link Archer A7(US)_V5_200721 allows an authenticated admin user, with physi... |
| CVE-2020-4484 | MEDIUM | 4.3 | 0.8% | Nov 6, 2020 | IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could disclose sensitive information to an authenticat... |
| CVE-2020-4483 | MEDIUM | 4.3 | 1.0% | Nov 6, 2020 | IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive info... |
| CVE-2020-4482 | MEDIUM | 6.5 | 0.9% | Nov 6, 2020 | IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow an authenticated user to bypass security. ... |
| CVE-2020-27617 | MEDIUM | 6.5 | 2.5% | Nov 6, 2020 | eth_get_gso_type in net/eth.c in QEMU 4.2.1 allows guest OS users to trigger an assertion failure. A guest can crash the... |
| CVE-2020-27616 | MEDIUM | 6.5 | 2.5% | Nov 6, 2020 | ati_2d_blt in hw/display/ati_2d.c in QEMU 4.2.1 can encounter an outside-limits situation in a calculation. A guest can ... |
| CVE-2020-27152 | MEDIUM | 5.5 | 0.6% | Nov 6, 2020 | An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an i... |
| CVE-2020-17490 | MEDIUM | 5.5 | 0.4% | Nov 6, 2020 | The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions. |
| CVE-2020-28249 | MEDIUM | 6.1 | 3.0% | Nov 6, 2020 | Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note. |
| CVE-2020-28242 | MEDIUM | 6.5 | 1.5% | Nov 6, 2020 | An issue was discovered in Asterisk Open Source 13.x before 13.37.1, 16.x before 16.14.1, 17.x before 17.8.1, and 18.x b... |
| CVE-2020-28241 | MEDIUM | 6.5 | 2.1% | Nov 6, 2020 | libmaxminddb before 1.4.3 has a heap-based buffer over-read in dump_entry_data_list in maxminddb.c. |
| CVE-2020-5667 | MEDIUM | 5.5 | 0.3% | Nov 6, 2020 | Studyplus App for Android v6.3.7 and earlier and Studyplus App for iOS v8.29.0 and earlier use a hard-coded API key for ... |
| CVE-2020-5643 | MEDIUM | 6.5 | 1.7% | Nov 6, 2020 | Improper input validation vulnerability in Cybozu Garoon 5.0.0 to 5.0.2 allows a remote authenticated attacker to delete... |
| CVE-2020-7207 | MEDIUM | 6.8 | 0.5% | Nov 5, 2020 | A local elevation of privilege using physical access security vulnerability was found in HPE Proliant Gen10 Servers usin... |
| CVE-2020-25662 | MEDIUM | 6.5 | 1.2% | Nov 5, 2020 | A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation ha... |
| CVE-2020-6015 | MEDIUM | 5.5 | 0.3% | Nov 5, 2020 | Check Point Endpoint Security for Windows before E84.10 can reach denial of service during clean install of the client w... |
| CVE-2020-5944 | MEDIUM | 4.3 | 0.8% | Nov 5, 2020 | In BIG-IQ 7.1.0, accessing the DoS Summary events and DNS Overview pages in the BIG-IQ system interface returns an error... |
| CVE-2020-5943 | MEDIUM | 6.5 | 0.5% | Nov 5, 2020 | In versions 14.1.0-14.1.0.1 and 14.1.2.5-14.1.2.7, when a BIG-IP object is created or listed through the REST interface,... |
| CVE-2020-5940 | MEDIUM | 5.4 | 0.5% | Nov 5, 2020 | In versions 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, and 14.1.0-14.1.2.3, a stored cross-site scripting (XSS) vulnerability exi... |
| CVE-2020-24431 | MEDIUM | 4.4 | 1.6% | Nov 5, 2020 | Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) f... |
| CVE-2020-8267 | MEDIUM | 5.3 | 1.2% | Nov 5, 2020 | A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi Protect cont... |
| CVE-2020-4097 | MEDIUM | 6.8 | 0.3% | Nov 5, 2020 | In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack... |
| CVE-2020-26505 | MEDIUM | 6.1 | 0.7% | Nov 5, 2020 | A Stored Cross-Site Scripting (XSS) vulnerability in the “Marmind” web application with version 4.1.141.0 allows an atta... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now