2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27362 | HIGH | 8.8 | 1.3% | Jul 1, 2021 | An issue exists within the SSH console of Akkadian Provisioning Manager 4.50.02 which allows a low-level privileged user... |
| CVE-2020-27361 | HIGH | 7.5 | 6.7% | Jul 1, 2021 | An issue exists within Akkadian Provisioning Manager 4.50.02 which allows attackers to view sensitive information within... |
| CVE-2020-9158 | HIGH | 7.5 | 0.7% | Jul 1, 2021 | There is a Missing Cryptographic Step vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability ... |
| CVE-2020-36407 | HIGH | 8.8 | 1.4% | Jul 1, 2021 | libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid. |
| CVE-2020-36406 | HIGH | 8.8 | 1.5% | Jul 1, 2021 | uWebSockets 18.11.0 and 18.12.0 has a stack-based buffer overflow in uWS::TopicTree::trimTree (called from uWS::TopicTre... |
| CVE-2020-36405 | HIGH | 7.8 | 1.1% | Jul 1, 2021 | Keystone Engine 0.9.2 has a use-after-free in llvm_ks::X86Operand::getToken. |
| CVE-2020-36404 | HIGH | 7.8 | 1.1% | Jul 1, 2021 | Keystone Engine 0.9.2 has an invalid free in llvm_ks::SmallVectorImpl<llvm_ks::MCFixup>::~SmallVectorImpl. |
| CVE-2020-36403 | HIGH | 8.8 | 1.6% | Jul 1, 2021 | HTSlib through 1.10.2 allows out-of-bounds write access in vcf_parse_format (called from vcf_parse and vcf_read). |
| CVE-2020-36402 | HIGH | 7.8 | 1.0% | Jul 1, 2021 | Solidity 0.7.5 has a stack-use-after-return issue in smtutil::CHCSmtLib2Interface::querySolver. NOTE: c39a5e2b7a3fabbf68... |
| CVE-2020-36401 | HIGH | 7.8 | 1.0% | Jul 1, 2021 | mruby 2.1.2 has a double free in mrb_default_allocf (called from mrb_free and obj_free). |
| CVE-2020-36400 | CRITICAL | 9.8 | 1.8% | Jul 1, 2021 | ZeroMQ libzmq 4.3.3 has a heap-based buffer overflow in zmq::tcp_read, a different vulnerability than CVE-2021-20235. |
| CVE-2020-36196 | MEDIUM | 6.1 | 0.6% | Jul 1, 2021 | A stored XSS vulnerability has been reported to affect QNAP NAS running QuLog Center. If exploited, this vulnerability a... |
| CVE-2020-36194 | MEDIUM | 6.1 | 0.6% | Jul 1, 2021 | An XSS vulnerability has been reported to affect QNAP NAS running QTS and QuTS hero. If exploited, this vulnerability al... |
| CVE-2020-18066 | MEDIUM | 6.1 | 0.6% | Jun 29, 2021 | Cross Site Scripting vulnerability in ZrLog 2.1.0 via the (1) userName and (2) email parameters in post/addComment. |
| CVE-2020-21394 | HIGH | 8.8 | 1.2% | Jun 29, 2021 | SQL Injection vulnerability in Zhong Bang Technology Co., Ltd CRMEB mall system V2.60 and V3.1 via the tablename paramet... |
| CVE-2020-7870 | HIGH | 7.2 | 0.7% | Jun 29, 2021 | A memory corruption vulnerability exists when ezPDF improperly handles the parameter. This vulnerability exists due to i... |
| CVE-2020-7869 | HIGH | 8.8 | 1.6% | Jun 29, 2021 | An improper input validation vulnerability of ZOOK software (remote administration tool) could allow a remote attacker t... |
| CVE-2020-7868 | CRITICAL | 9.8 | 2.7% | Jun 29, 2021 | A remote code execution vulnerability exists in helpUS(remote administration tool) due to improper validation of paramet... |
| CVE-2020-7871 | CRITICAL | 9.8 | 0.9% | Jun 29, 2021 | A vulnerability of Helpcom could allow an unauthenticated attacker to execute arbitrary command. This vulnerability exis... |
| CVE-2020-21142 | MEDIUM | 6.1 | 0.7% | Jun 28, 2021 | Cross Site Scripting (XSS) vulnerabilty in IPFire 2.23 via the IPfire web UI in the mail.cgi. |
| CVE-2020-22609 | MEDIUM | 6.1 | 0.7% | Jun 28, 2021 | Cross Site Scripting (XSS) vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter in include/... |
| CVE-2020-22608 | MEDIUM | 6.1 | 0.7% | Jun 28, 2021 | Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.s... |
| CVE-2020-22607 | MEDIUM | 6.1 | 0.7% | Jun 28, 2021 | Cross Site Scripting vulnerabilty in LimeSurvey 4.1.11+200316 via the (1) name and (2) description parameters in applica... |
| CVE-2020-20640 | MEDIUM | 6.1 | 1.0% | Jun 28, 2021 | Cross Site Scripting (XSS) vulnerability in ECShop 4.0 due to security filtering issues, in the user.php file, we can us... |
| CVE-2020-23715 | HIGH | 8.6 | 1.7% | Jun 28, 2021 | Directory Traversal vulnerability in Webport CMS 1.19.10.17121 via the file parameter to file/download. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now