2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-26905HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...
CVE-2020-26904HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...
CVE-2020-26903HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...
CVE-2020-26902HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-26900HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...
CVE-2020-26898HIGH8.8NETGEAR RAX40 devices before 1.0.3.80 are affected by incorrect configuration of security settings.
CVE-2020-26897HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects CBR40 before 2.5.0.10, RB...
CVE-2020-26522HIGH8.8A cross-site request forgery (CSRF) vulnerability in mod/user/act_user.php in Garfield Petshop through 2020-10-01 allows...
CVE-2020-15838HIGH8.8The Agent Update System in ConnectWise Automate before 2020.8 allows Privilege Escalation because the _LTUPDATE folder h...
CVE-2020-26894HIGH7.8LiveCode v9.6.1 on Windows allows local, low-privileged users to gain privileges by creating a malicious "cmd.exe" in th...
CVE-2020-9048HIGH8.1A vulnerability in specified versions of American Dynamics victor Web Client and Software House CCURE Web Client could a...
CVE-2020-26802HIGH8.8forma.lms 2.3.0.2 is affected by Cross Site Request Forgery (CSRF) in formalms/appCore/index.php?r=lms/profile/show&ap=s...
CVE-2020-10816HIGH7.5Zoho ManageEngine Applications Manager 14780 and before allows a remote unauthenticated attacker to register managed ser...
CVE-2020-4799HIGH7.8IBM Informix spatial 14.10 could allow a local user to execute commands as a privileged user due to an out of bounds wri...
CVE-2020-4280HIGH8.8IBM QRadar SIEM 7.3 and 7.4 could allow a remote attacker to execute arbitrary commands on the system, caused by insecur...
CVE-2020-13340HIGH8.7An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2: Stored XSS in CI Job ...
CVE-2020-2286HIGH8.8Jenkins Role-based Authorization Strategy Plugin 3.0 and earlier does not properly invalidate a permission cache when th...
CVE-2020-25263HIGH7.1PyroCMS 3.7 is vulnerable to cross-site request forgery (CSRF) via the admin/addons/uninstall/anomaly.module.blocks URI:...
CVE-2020-3596HIGH7.5A vulnerability in the Session Initiation Protocol (SIP) of Cisco Expressway Series and Cisco TelePresence Video Communi...
CVE-2020-3544HIGH8.8A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could...
CVE-2020-3535HIGH8.4A vulnerability in the loading mechanism of specific DLLs in the Cisco Webex Teams client for Windows could allow an aut...
CVE-2020-3467HIGH7.7A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat...
CVE-2020-7316HIGH7.8Unquoted service path vulnerability in McAfee File and Removable Media Protection (FRP) prior to 5.3.0 allows local user...
CVE-2020-15176HIGH8.6In GLPI before version 9.5.2, when supplying a back tick in input that gets put into a SQL query,the application does no...
CVE-2020-26880HIGH7.8Sympa through 6.2.57b.2 allows a local privilege escalation from the sympa user account to full root access by modifying...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now