2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-3513MEDIUM6.7Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cis...
CVE-2020-3503MEDIUM6A vulnerability in the file system permissions of Cisco IOS XE Software could allow an authenticated, local attacker to ...
CVE-2020-3487MEDIUM6.5Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco...
CVE-2020-3486MEDIUM6.5Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco...
CVE-2020-3477MEDIUM5.5A vulnerability in the CLI parser of Cisco IOS Software and Cisco IOS XE Software could allow an authenticated, local at...
CVE-2020-3476MEDIUM6A vulnerability in the CLI implementation of a specific command of Cisco IOS XE Software could allow an authenticated, l...
CVE-2020-3465MEDIUM6.5A vulnerability in Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a device to reload. ...
CVE-2020-3429MEDIUM6.5A vulnerability in the WPA2 and WPA3 security implementation of Cisco IOS XE Wireless Controller Software for the Cisco ...
CVE-2020-3428MEDIUM6.5A vulnerability in the WLAN Local Profiling feature of Cisco IOS XE Wireless Controller Software for the Cisco Catalyst ...
CVE-2020-3423MEDIUM6.7A vulnerability in the implementation of the Lua interpreter that is integrated in Cisco IOS XE Software could allow an ...
CVE-2020-3418MEDIUM4.7A vulnerability in Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9800 Series Routers could allow an unaut...
CVE-2020-3417MEDIUM6.7A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to execute persistent code at boot...
CVE-2020-3416MEDIUM6.7Multiple vulnerabilities in the initialization routines that are executed during bootup of Cisco IOS XE Software for Cis...
CVE-2020-12815MEDIUM5.4An improper neutralization of input vulnerability in FortiTester before 3.9.0 may allow a remote authenticated attacker ...
CVE-2020-12811MEDIUM6.1An improper neutralization of script-related HTML tags in a web page in FortiManager 6.2.0, 6.2.1, 6.2.2, and 6.2.3and F...
CVE-2020-12841MEDIUM6.5ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload imae files via /index.php
CVE-2020-12840MEDIUM6.5ismartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to upload sound files via /index.php
CVE-2020-12281MEDIUM6.5iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to create a new user via /index.php.
CVE-2020-26088MEDIUM5.5A missing CAP_NET_RAW check in NFC socket creation in net/nfc/rawsock.c in the Linux kernel before 5.8.2 could be used b...
CVE-2020-15840MEDIUM5.3In Liferay Portal before 7.3.1, Liferay Portal 6.2 EE, and Liferay DXP 7.2, DXP 7.1 and DXP 7.0, the property 'portlet.r...
CVE-2020-12818MEDIUM5.3An insufficient logging vulnerability in FortiGate before 6.4.1 may allow the traffic from an unauthenticated attacker t...
CVE-2020-12816MEDIUM6.1An improper neutralization of input vulnerability in FortiNAC before 8.7.2 may allow a remote authenticated attacker to ...
CVE-2020-12280MEDIUM6.5iSmartgate PRO 1.5.9 is vulnerable to CSRF that allows remote attackers to open/close a specified garage door/gate via /...
CVE-2020-6020MEDIUM6.4Check Point Security Management's Internal CA web management before Jumbo HFAs R80.10 Take 278, R80.20 Take 160, R80.30 ...
CVE-2020-22453MEDIUM6.1Untis WebUntis before 2020.9.6 allows XSS in multiple functions that store information.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now