2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-12615HIGH7.8An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to ...
CVE-2020-12613HIGH8.8An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process wit...
CVE-2020-28407HIGH7.1In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink at...
CVE-2020-36767HIGH7.5tinyfiledialogs (aka tiny file dialogs) before 3.8.0 allows shell metacharacters in titles, messages, and other input da...
CVE-2020-36714HIGH8.1The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_admin...
CVE-2020-36698HIGH8.8The Security & Malware scan by CleanTalk plugin for WordPress is vulnerable to unauthorized user interaction in versions...
CVE-2020-27213HIGH7.5An issue was discovered in Ethernut Nut/OS 5.1. The code that generates Initial Sequence Numbers (ISNs) for TCP connecti...
CVE-2020-18336HIGH7.4Cross Site Scripting (XSS) vulnerability found in Typora v.0.9.65 allows a remote attacker to obtain sensitive informati...
CVE-2020-19323HIGH7.5An issue was discovered in /bin/mini_upnpd on D-Link DIR-619L 2.06beta devices. There is a heap buffer overflow allowing...
CVE-2020-19318HIGH8.8Buffer Overflow vulnerability in D-Link DIR-605L, hardware version AX, firmware version 1.17beta and below, allows autho...
CVE-2020-24088HIGH7.8An issue was discovered in MmMapIoSpace routine in Foxconn Live Update Utility 2.1.6.26, allows local attackers to escal...
CVE-2020-10130HIGH8.8SearchBlox before Version 9.1 is vulnerable to business logic bypass where the user is able to create multiple super adm...
CVE-2020-10129HIGH8.8SearchBlox before Version 9.2.1 is vulnerable to Privileged Escalation-Lower user is able to access Admin functionality.
CVE-2020-35593HIGH7.8BMC PATROL Agent through 20.08.00 allows local privilege escalation via vectors involving pconfig +RESTART -host.
CVE-2020-24165HIGH8.8An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate pri...
CVE-2020-35342HIGH7.5GNU Binutils before 2.34 has an uninitialized-heap vulnerability in function tic4x_print_cond (file opcodes/tic4x-dis.c)...
CVE-2020-26652HIGH7.5An issue was discovered in function nl80211_send_chandef in rtl8812au v5.6.4.2 allows attackers to cause a denial of ser...
CVE-2020-25887HIGH8.8Buffer overflow in mg_resolve_from_hosts_file in Mongoose 6.18, when reading from a crafted hosts file.
CVE-2020-24295HIGH8.8Buffer Overflow vulnerability in PSDParser.cpp::ReadImageLine() in FreeImage 3.19.0 [r1859] allows remote attackers to r...
CVE-2020-24293HIGH8.8Buffer Overflow vulnerability in psdThumbnail::Read in PSDParser.cpp in FreeImage 3.19.0 [r1859] allows remote attackers...
CVE-2020-24292HIGH8.8Buffer Overflow vulnerability in load function in PluginICO.cpp in FreeImage 3.19.0 [r1859] allows remote attackers to r...
CVE-2020-23804HIGH7.5Uncontrolled Recursion in pdfinfo, and pdftops in poppler 0.89.0 allows remote attackers to cause a denial of service vi...
CVE-2020-23793HIGH8.6An issue was discovered in spice-server spice-server-0.14.0-6.el7_6.1.x86_64 of Redhat's VDI product. There is a securit...
CVE-2020-22570HIGH7.5Memcached 1.6.0 before 1.6.3 allows remote attackers to cause a denial of service (daemon crash) via a crafted meta comm...
CVE-2020-22219HIGH7.8Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now