2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26182 | MEDIUM | 6.5 | 0.7% | Oct 16, 2020 | Dell EMC NetWorker versions prior to 19.3.0.2 contain an incorrect privilege assignment vulnerability. A non-LDAP remote... |
| CVE-2020-9976 | MEDIUM | 5.5 | 1.1% | Oct 16, 2020 | A logic issue was addressed with improved state management. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0, ... |
| CVE-2020-9968 | MEDIUM | 5.5 | 1.1% | Oct 16, 2020 | A logic issue was addressed with improved restrictions. This issue is fixed in iOS 14.0 and iPadOS 14.0, macOS Catalina ... |
| CVE-2020-9964 | MEDIUM | 5.5 | 0.4% | Oct 16, 2020 | A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 14.0 and iPadOS 14... |
| CVE-2020-9946 | MEDIUM | 6.8 | 0.3% | Oct 16, 2020 | This issue was addressed with improved checks. This issue is fixed in iOS 14.0 and iPadOS 14.0, watchOS 7.0. The screen ... |
| CVE-2020-9934 | MEDIUM | 5.5 | 3.2% | Oct 16, 2020 | An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue... |
| CVE-2020-9925 | MEDIUM | 6.1 | 1.1% | Oct 16, 2020 | A logic issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS 13.4.8... |
| CVE-2020-9916 | MEDIUM | 5.3 | 1.4% | Oct 16, 2020 | A URL Unicode encoding issue was addressed with improved state management. This issue is fixed in iOS 13.6 and iPadOS 13... |
| CVE-2020-9915 | MEDIUM | 6.5 | 1.4% | Oct 16, 2020 | An access issue existed in Content Security Policy. This issue was addressed with improved access restrictions. This iss... |
| CVE-2020-9913 | MEDIUM | 5.5 | 0.3% | Oct 16, 2020 | This issue was addressed with improved data protection. This issue is fixed in macOS Catalina 10.15.6. A local user may ... |
| CVE-2020-9909 | MEDIUM | 5.9 | 1.7% | Oct 16, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvOS... |
| CVE-2020-9894 | MEDIUM | 4.3 | 2.6% | Oct 16, 2020 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.6 and iPadOS 13.6, tvO... |
| CVE-2020-9885 | MEDIUM | 5.5 | 0.4% | Oct 16, 2020 | An issue existed in the handling of iMessage tapbacks. The issue was resolved with additional verification. This issue i... |
| CVE-2020-15157 | MEDIUM | 6.1 | 2.2% | Oct 16, 2020 | In containerd (an industry-standard container runtime) before version 1.2.14 there is a credential leaking vulnerability... |
| CVE-2020-26672 | MEDIUM | 5.4 | 0.7% | Oct 16, 2020 | Testimonial Rotator Wordpress Plugin 3.0.2 is affected by Cross Site Scripting (XSS) in /wp-admin/post.php. If a user in... |
| CVE-2020-24408 | MEDIUM | 6.1 | 1.7% | Oct 16, 2020 | Magento versions 2.4.0 and 2.3.5p1 (and earlier) are affected by a persistent XSS vulnerability that allows users to upl... |
| CVE-2020-16270 | MEDIUM | 6.1 | 13.1% | Oct 16, 2020 | OLIMPOKS under 3.3.39 allows Auth/Admin ErrorMessage XSS. Remote Attacker can use discovered vulnerability to inject mal... |
| CVE-2020-14299 | MEDIUM | 6.5 | 1.4% | Oct 16, 2020 | A flaw was found in JBoss EAP, where the authentication configuration is set-up using a legacy SecurityRealm, to delegat... |
| CVE-2020-26584 | MEDIUM | 6.1 | 0.9% | Oct 16, 2020 | An issue was discovered in Sage DPW 2020_06_x before 2020_06_002. The search field "Kurs suchen" on the page Kurskatalog... |
| CVE-2020-26583 | MEDIUM | 6.1 | 1.0% | Oct 16, 2020 | An issue was discovered in Sage DPW 2020_06_x before 2020_06_002. It allows unauthenticated users to upload JavaScript (... |
| CVE-2020-24352 | MEDIUM | 5.5 | 0.4% | Oct 16, 2020 | An issue was discovered in QEMU through 5.1.0. An out-of-bounds memory access was found in the ATI VGA device implementa... |
| CVE-2020-27163 | MEDIUM | 6.1 | 0.7% | Oct 16, 2020 | phpRedisAdmin before 1.13.2 allows XSS via the login.php username parameter. |
| CVE-2020-14185 | MEDIUM | 5.3 | 1.9% | Oct 15, 2020 | Affected versions of Jira Server allow remote unauthenticated attackers to enumerate issue keys via a missing permission... |
| CVE-2020-1777 | MEDIUM | 5.3 | 0.8% | Oct 15, 2020 | Agent names that participates in a chat conversation are revealed in certain parts of the external interface as well as ... |
| CVE-2020-15794 | MEDIUM | 4.3 | 0.8% | Oct 15, 2020 | A vulnerability has been identified in Desigo Insight (All versions). Some error messages in the web application show th... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now