2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36429 | MEDIUM | 5.5 | 0.3% | Jul 20, 2021 | Variant_encodeJson in open62541 1.x before 1.0.4 has an out-of-bounds write for a large recursion depth. |
| CVE-2020-36428 | HIGH | 8.8 | 1.4% | Jul 20, 2021 | matio (aka MAT File I/O Library) 1.5.18 through 1.5.21 has a heap-based buffer overflow in ReadInt32DataDouble (called f... |
| CVE-2020-5349 | CRITICAL | 9.8 | 1.2% | Jul 19, 2021 | Dell EMC Networking S4100 and S5200 Series Switches manufactured prior to February 2020 contain a hardcoded credential v... |
| CVE-2020-5323 | HIGH | 8.1 | 1.0% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5322 | CRITICAL | 9.1 | 2.3% | Jul 19, 2021 | Dell EMC OpenManage Enterprise-Modular (OME-M) versions prior to 1.10.00 contain a command injection vulnerability. A re... |
| CVE-2020-5321 | HIGH | 7.6 | 0.9% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5320 | HIGH | 7.2 | 0.9% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5315 | HIGH | 8.8 | 0.2% | Jul 19, 2021 | Dell EMC Repository Manager (DRM) version 3.2 contains a plain-text password storage vulnerability. Proxy server user pa... |
| CVE-2020-29503 | MEDIUM | 4.4 | 0.2% | Jul 19, 2021 | Dell EMC PowerStore versions prior to 1.0.3.0.5.xxx contain a file permission Vulnerability. A locally authenticated att... |
| CVE-2020-29499 | MEDIUM | 6.7 | 0.4% | Jul 19, 2021 | Dell EMC PowerStore versions prior to 1.0.3.0.5.006 contain an OS Command Injection vulnerability in PowerStore X enviro... |
| CVE-2020-22741 | HIGH | 7.5 | 0.8% | Jul 19, 2021 | An issue was discovered in Xuperchain 3.6.0 that allows for attackers to recover any arbitrary users' private key after ... |
| CVE-2020-20249 | MEDIUM | 6.5 | 1.8% | Jul 19, 2021 | Mikrotik RouterOs before stable 6.47 suffers from a memory corruption vulnerability in the resolver process. By sending ... |
| CVE-2020-20248 | MEDIUM | 6.5 | 1.8% | Jul 19, 2021 | Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the memtest process. An authen... |
| CVE-2020-36427 | MEDIUM | 5.5 | 0.7% | Jul 19, 2021 | GNOME gThumb before 3.10.1 allows an application crash via a malformed JPEG image. |
| CVE-2020-36426 | HIGH | 7.5 | 1.7% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.24.0. mbedtls_x509_crl_parse_der has a buffer over-read (of one byte). |
| CVE-2020-36425 | MEDIUM | 5.3 | 0.9% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.24.0. It incorrectly uses a revocationDate check when deciding whether ... |
| CVE-2020-36424 | MEDIUM | 4.7 | 0.3% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.24.0. An attacker can recover a private key (for RSA or static Diffie-H... |
| CVE-2020-36423 | HIGH | 7.5 | 1.2% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.23.0. A remote attacker can recover plaintext because a certain Lucky 1... |
| CVE-2020-36422 | MEDIUM | 5.3 | 1.3% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.23.0. A side channel allows recovery of an ECC private key, related to ... |
| CVE-2020-36421 | MEDIUM | 5.3 | 1.6% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.23.0. Because of a side channel in modular exponentiation, an RSA priva... |
| CVE-2020-22650 | HIGH | 7.5 | 1.1% | Jul 19, 2021 | A memory leak vulnerability in sim-organizer.c of AlienVault Ossim v5 causes a denial of service (DOS) via a system cras... |
| CVE-2020-20230 | MEDIUM | 6.5 | 1.9% | Jul 19, 2021 | Mikrotik RouterOs before stable 6.47 suffers from an uncontrolled resource consumption in the sshd process. An authentic... |
| CVE-2020-5031 | MEDIUM | 5.4 | 0.5% | Jul 19, 2021 | IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users... |
| CVE-2020-4980 | MEDIUM | 6.5 | 0.3% | Jul 16, 2021 | IBM QRadar SIEM 7.3 and 7.4 uses less secure methods for protecting data in transit between hosts when encrypt host conn... |
| CVE-2020-4821 | CRITICAL | 9.8 | 2.0% | Jul 16, 2021 | IBM InfoSphere Data Replication 11.4 and IBM InfoSphere Change Data Capture for z/OS 10.2.1, under certain configuration... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now