2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-7811HIGH7.8Samsung Update 3.0.2.0 ~ 3.0.32.0 has a vulnerability that allows privilege escalation as commands crafted by attacker a...
CVE-2020-4388HIGH8.2IBM Cognos Analytics 11.0 and 11.1 could be vulnerable to a denial of service attack by failing to catch exceptions in a...
CVE-2020-4302HIGH7.8IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CS...
CVE-2020-26869HIGH7.5ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to ac...
CVE-2020-26868HIGH7.5ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an una...
CVE-2020-4779HIGH8.1A HTTP Verb Tampering vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. By sending a specia...
CVE-2020-4778HIGH7.5IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which les...
CVE-2020-4776HIGH7.5A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which could allow a remo...
CVE-2020-4772HIGH8.1An XML External Entity Injection (XXE) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. A ...
CVE-2020-5140HIGH7.5A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on the firewall SSL...
CVE-2020-5139HIGH7.5A vulnerability in SonicOS SSLVPN service allows a remote unauthenticated attacker to cause Denial of Service (DoS) due ...
CVE-2020-5138HIGH7.5A Heap Overflow vulnerability in the SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) o...
CVE-2020-5137HIGH7.5A buffer overflow vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service (DoS) on ...
CVE-2020-5133HIGH7.5A vulnerability in SonicOS allows a remote unauthenticated attacker to cause Denial of Service due to buffer overflow, w...
CVE-2020-26947HIGH7.8monero-wallet-gui in Monero GUI before 0.17.1.0 includes the . directory in an embedded RPATH (with a preference ahead o...
CVE-2020-26945HIGH8.1MyBatis before 3.5.6 mishandles deserialization of object streams.
CVE-2020-26929HIGH8Certain NETGEAR devices are affected by command injection by an authenticated user. This affects R6220 before 1.1.0.100 ...
CVE-2020-26921HIGH8.8Certain NETGEAR devices are affected by authentication bypass. This affects GS110EMX before 1.0.1.7, GS810EMX before 1.7...
CVE-2020-26920HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5....
CVE-2020-26914HIGH7.1Certain NETGEAR devices are affected by command injection by an authenticated user. This affects D6200 before 1.1.00.38,...
CVE-2020-26912HIGH8.8Certain NETGEAR devices are affected by CSRF. This affects D6200 before 1.1.00.38, D7000 before 1.0.1.78, JR6150 before ...
CVE-2020-26911HIGH8.8Certain NETGEAR devices are affected by lack of access control at the function level. This affects D6200 before 1.1.00.3...
CVE-2020-26909HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects D7800 before 1.0....
CVE-2020-26907HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK852 before 3.2...
CVE-2020-26906HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now