2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-12615 | HIGH | 7.8 | 0.2% | Dec 12, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to ... |
| CVE-2020-12613 | HIGH | 8.8 | 0.8% | Dec 11, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process wit... |
| CVE-2020-28407 | HIGH | 7.1 | 0.3% | Nov 3, 2023 | In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink at... |
| CVE-2020-36767 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | tinyfiledialogs (aka tiny file dialogs) before 3.8.0 allows shell metacharacters in titles, messages, and other input da... |
| CVE-2020-36714 | HIGH | 8.1 | 0.4% | Oct 20, 2023 | The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_admin... |
| CVE-2020-36698 | HIGH | 8.8 | 1.0% | Oct 20, 2023 | The Security & Malware scan by CleanTalk plugin for WordPress is vulnerable to unauthorized user interaction in versions... |
| CVE-2020-27213 | HIGH | 7.5 | 1.0% | Oct 10, 2023 | An issue was discovered in Ethernut Nut/OS 5.1. The code that generates Initial Sequence Numbers (ISNs) for TCP connecti... |
| CVE-2020-18336 | HIGH | 7.4 | 0.6% | Oct 10, 2023 | Cross Site Scripting (XSS) vulnerability found in Typora v.0.9.65 allows a remote attacker to obtain sensitive informati... |
| CVE-2020-19323 | HIGH | 7.5 | 1.0% | Sep 11, 2023 | An issue was discovered in /bin/mini_upnpd on D-Link DIR-619L 2.06beta devices. There is a heap buffer overflow allowing... |
| CVE-2020-19318 | HIGH | 8.8 | 1.0% | Sep 11, 2023 | Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and below, allows autho... |
| CVE-2020-24088 | HIGH | 7.8 | 0.4% | Sep 11, 2023 | An issue was discovered in MmMapIoSpace routine in Foxconn Live Update Utility 2.1.6.26, allows local attackers to escal... |
| CVE-2020-10130 | HIGH | 8.8 | 0.8% | Sep 6, 2023 | SearchBlox before Version 9.1 is vulnerable to business logic bypass where the user is able to create multiple super adm... |
| CVE-2020-10129 | HIGH | 8.8 | 0.7% | Sep 6, 2023 | SearchBlox before Version 9.2.1 is vulnerable to Privileged Escalation-Lower user is able to access Admin functionality. |
| CVE-2020-35593 | HIGH | 7.8 | 0.3% | Sep 5, 2023 | BMC PATROL Agent through 20.08.00 allows local privilege escalation via vectors involving pconfig +RESTART -host. |
| CVE-2020-24165 | HIGH | 8.8 | 0.7% | Aug 28, 2023 | An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate pri... |
| CVE-2020-35342 | HIGH | 7.5 | 0.7% | Aug 22, 2023 | GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c)... |
| CVE-2020-26652 | HIGH | 7.5 | 0.6% | Aug 22, 2023 | An issue was discovered in function nl80211_send_chandef in rtl8812au v5.6.4.2 allows attackers to cause a denial of ser... |
| CVE-2020-25887 | HIGH | 8.8 | 0.6% | Aug 22, 2023 | Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file. |
| CVE-2020-24295 | HIGH | 8.8 | 1.1% | Aug 22, 2023 | Buffer Overflow vulnerability in PSDParser.cpp::ReadImageLine() in FreeImage 3.19.0 [r1859] allows remote attackers to r... |
| CVE-2020-24293 | HIGH | 8.8 | 1.2% | Aug 22, 2023 | Buffer Overflow vulnerability in psdThumbnail::Read in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers... |
| CVE-2020-24292 | HIGH | 8.8 | 1.2% | Aug 22, 2023 | Buffer Overflow vulnerability in load function in PluginICO.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to r... |
| CVE-2020-23804 | HIGH | 7.5 | 0.9% | Aug 22, 2023 | Uncontrolled Recursion in pdfinfo, and pdftops in poppler 0.89.0 allows remote attackers to cause a denial of service vi... |
| CVE-2020-23793 | HIGH | 8.6 | 0.7% | Aug 22, 2023 | An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a securit... |
| CVE-2020-22570 | HIGH | 7.5 | 1.0% | Aug 22, 2023 | Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted meta comm... |
| CVE-2020-22219 | HIGH | 7.8 | 0.7% | Aug 22, 2023 | Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now