2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-24416MEDIUM6.1Marketo Sales Insight plugin version 1.4355 (and earlier) is affected by a blind stored Cross-Site Scripting (XSS) vulne...
CVE-2020-7371MEDIUM4.3User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of the Yandex Browser all...
CVE-2020-7370MEDIUM4.3User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of Danyil Vasilenko's Bol...
CVE-2020-7369MEDIUM4.3User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of the Yandex Browser all...
CVE-2020-7364MEDIUM4.3User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser all...
CVE-2020-7363MEDIUM4.3User Interface (UI) Misrepresentation of Critical Information vulnerability in the address bar of UCWeb's UC Browser all...
CVE-2020-3995MEDIUM5.3In VMware ESXi (6.7 before ESXi670-201908101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x before 15.1.0), Fus...
CVE-2020-3993MEDIUM5.9VMware NSX-T (3.x before 3.0.2, 2.5.x before 2.5.2.2.0) contains a security vulnerability that exists in the way it allo...
CVE-2020-3981MEDIUM5.8VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Work...
CVE-2020-4756MEDIUM5.5IBM Spectrum Scale V4.2.0.0 through V4.2.3.23 and V5.0.0.0 through V5.0.5.2 as well as IBM Elastic Storage System 6.0.0 ...
CVE-2020-4755MEDIUM5.4IBM Spectrum Scale 5.0.0 through 5.0.5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed...
CVE-2020-4749MEDIUM4.3IBM Spectrum Scale 5.0.0 through 5.0.5.2 does not set the secure attribute on authorization tokens or session cookies. A...
CVE-2020-4748MEDIUM6.1IBM Spectrum Scale 5.0.0 through 5.0.5.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed...
CVE-2020-4564MEDIUM5.4IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.0.3.1 and IBM Sterling File Gateway 2.2.0.0 through 6.0.3...
CVE-2020-4491MEDIUM5.5IBM Spectrum Scale V4.2.0.0 through V4.2.3.22 and V5.0.0.0 through V5.0.5 could allow a local attacker to cause a denial...
CVE-2020-16246MEDIUM6.1The affected Reason S20 Ethernet Switch is vulnerable to cross-site scripting (XSS), which may allow attackers to trick ...
CVE-2020-6370MEDIUM4.8SAP NetWeaver Design Time Repository (DTR), versions - 7.11, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-c...
CVE-2020-6369MEDIUM5.9SAP Solution Manager and SAP Focused Run (update provided in WILY_INTRO_ENTERPRISE 9.7, 10.1, 10.5, 10.7), allows an una...
CVE-2020-6367MEDIUM6.1There is a reflected cross site scripting vulnerability in SAP NetWeaver Composite Application Framework, versions - 7.2...
CVE-2020-6366MEDIUM6.5SAP NetWeaver (Compare Systems) versions - 7.20, 7.30, 7.40, 7.50, does not sufficiently validate uploaded XML documents...
CVE-2020-6362MEDIUM6.5SAP Banking Services version 500, use an incorrect authorization object in some of its reports. Although the affected re...
CVE-2020-6315MEDIUM5.5SAP 3D Visual Enterprise Viewer, version 9, allows an attacker to send certain manipulated file to the victim, which can...
CVE-2020-6308MEDIUM5.3SAP BusinessObjects Business Intelligence Platform (Web Services) versions - 410, 420, 430, allows an unauthenticated at...
CVE-2020-7747MEDIUM6.3This affects all versions of package lightning-server. It is possible to inject malicious JavaScript code as part of a s...
CVE-2020-15261MEDIUM6.7On Windows the Veyon Service before version 4.4.2 contains an unquoted service path vulnerability, allowing locally auth...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now