2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7811 | HIGH | 7.8 | 0.7% | Oct 12, 2020 | Samsung Update 3.0.2.0 ~ 3.0.32.0 has a vulnerability that allows privilege escalation as commands crafted by attacker a... |
| CVE-2020-4388 | HIGH | 8.2 | 1.2% | Oct 12, 2020 | IBM Cognos Analytics 11.0 and 11.1 could be vulnerable to a denial of service attack by failing to catch exceptions in a... |
| CVE-2020-4302 | HIGH | 7.8 | 1.7% | Oct 12, 2020 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CS... |
| CVE-2020-26869 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to ac... |
| CVE-2020-26868 | HIGH | 7.5 | 2.1% | Oct 12, 2020 | ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an una... |
| CVE-2020-4779 | HIGH | 8.1 | 1.1% | Oct 12, 2020 | A HTTP Verb Tampering vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. By sending a specia... |
| CVE-2020-4778 | HIGH | 7.5 | 0.8% | Oct 12, 2020 | IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which les... |
| CVE-2020-4776 | HIGH | 7.5 | 2.0% | Oct 12, 2020 | A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which could allow a remo... |
| CVE-2020-4772 | HIGH | 8.1 | 1.4% | Oct 12, 2020 | An XML External Entity Injection (XXE) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. A ... |
| CVE-2020-5140 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSL... |
| CVE-2020-5139 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | A vulnerability in SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS) due ... |
| CVE-2020-5138 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | A Heap Overflow vulnerability in the SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) o... |
| CVE-2020-5137 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | A buffer overflow vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on ... |
| CVE-2020-5133 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service due to buffer overflow, w... |
| CVE-2020-26947 | HIGH | 7.8 | 0.4% | Oct 10, 2020 | monero-wallet-gui in Monero GUI before 0.17.1.0 includes the . directory in an embedded RPATH (with a preference ahead o... |
| CVE-2020-26945 | HIGH | 8.1 | 1.8% | Oct 10, 2020 | MyBatis before 3.5.6 mishandles deserialization of object streams. |
| CVE-2020-26929 | HIGH | 8 | 0.9% | Oct 9, 2020 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6220 before 1.1.0.100 ... |
| CVE-2020-26921 | HIGH | 8.8 | 0.8% | Oct 9, 2020 | Certain NETGEAR devices are affected by authentication bypass. This affects GS110EMX before 1.0.1.7, GS810EMX before 1.7... |
| CVE-2020-26920 | HIGH | 8.8 | 1.2% | Oct 9, 2020 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5.... |
| CVE-2020-26914 | HIGH | 7.1 | 0.8% | Oct 9, 2020 | Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.38,... |
| CVE-2020-26912 | HIGH | 8.8 | 0.5% | Oct 9, 2020 | Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before ... |
| CVE-2020-26911 | HIGH | 8.8 | 0.5% | Oct 9, 2020 | Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6200 before 1.1.00.3... |
| CVE-2020-26909 | HIGH | 8.8 | 2.5% | Oct 9, 2020 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7800 before 1.0.... |
| CVE-2020-26907 | HIGH | 8.8 | 1.5% | Oct 9, 2020 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2... |
| CVE-2020-26906 | HIGH | 8.8 | 0.6% | Oct 9, 2020 | Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now