2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-26083MEDIUM4.8A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2020-8577MEDIUM5.9SANtricity OS Controller Software versions 11.50.1 and higher are susceptible to a vulnerability which could allow an at...
CVE-2020-5795MEDIUM6.2UNIX Symbolic Link (Symlink) Following in TP-Link Archer A7(US)_V5_200721 allows an authenticated admin user, with physi...
CVE-2020-4484MEDIUM4.3IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could disclose sensitive information to an authenticat...
CVE-2020-4483MEDIUM4.3IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow a remote attacker to obtain sensitive info...
CVE-2020-4482MEDIUM6.5IBM UrbanCode Deploy (UCD) 6.2.7.3, 6.2.7.4, 7.0.3.0, and 7.0.4.0 could allow an authenticated user to bypass security. ...
CVE-2020-27617MEDIUM6.5eth_get_gso_type in net/eth.c in QEMU 4.2.1 allows guest OS users to trigger an assertion failure. A guest can crash the...
CVE-2020-27616MEDIUM6.5ati_2d_blt in hw/display/ati_2d.c in QEMU 4.2.1 can encounter an outside-limits situation in a calculation. A guest can ...
CVE-2020-27152MEDIUM5.5An issue was discovered in ioapic_lazy_update_eoi in arch/x86/kvm/ioapic.c in the Linux kernel before 5.9.2. It has an i...
CVE-2020-17490MEDIUM5.5The TLS module within SaltStack Salt through 3002 creates certificates with weak file permissions.
CVE-2020-28249MEDIUM6.1Joplin 1.2.6 for Desktop allows XSS via a LINK element in a note.
CVE-2020-28242MEDIUM6.5An issue was discovered in Asterisk Open Source 13.x before 13.37.1, 16.x before 16.14.1, 17.x before 17.8.1, and 18.x b...
CVE-2020-28241MEDIUM6.5libmaxminddb before 1.4.3 has a heap-based buffer over-read in dump_entry_data_list in maxminddb.c.
CVE-2020-5667MEDIUM5.5Studyplus App for Android v6.3.7 and earlier and Studyplus App for iOS v8.29.0 and earlier use a hard-coded API key for ...
CVE-2020-5643MEDIUM6.5Improper input validation vulnerability in Cybozu Garoon 5.0.0 to 5.0.2 allows a remote authenticated attacker to delete...
CVE-2020-7207MEDIUM6.8A local elevation of privilege using physical access security vulnerability was found in HPE Proliant Gen10 Servers usin...
CVE-2020-25662MEDIUM6.5A Red Hat only CVE-2020-12352 regression issue was found in the way the Linux kernel's Bluetooth stack implementation ha...
CVE-2020-6015MEDIUM5.5Check Point Endpoint Security for Windows before E84.10 can reach denial of service during clean install of the client w...
CVE-2020-5944MEDIUM4.3In BIG-IQ 7.1.0, accessing the DoS Summary events and DNS Overview pages in the BIG-IQ system interface returns an error...
CVE-2020-5943MEDIUM6.5In versions 14.1.0-14.1.0.1 and 14.1.2.5-14.1.2.7, when a BIG-IP object is created or listed through the REST interface,...
CVE-2020-5940MEDIUM5.4In versions 16.0.0-16.0.0.1, 15.1.0-15.1.0.5, and 14.1.0-14.1.2.3, a stored cross-site scripting (XSS) vulnerability exi...
CVE-2020-24431MEDIUM4.4Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) f...
CVE-2020-8267MEDIUM5.3A security issue was found in UniFi Protect controller v1.14.10 and earlier.The authentication in the UniFi Protect cont...
CVE-2020-4097MEDIUM6.8In HCL Notes version 9 previous to release 9.0.1 FixPack 10 Interim Fix 8, version 10 previous to release 10.0.1 FixPack...
CVE-2020-26505MEDIUM6.1A Stored Cross-Site Scripting (XSS) vulnerability in the “Marmind” web application with version 4.1.141.0 allows an atta...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now