2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-25248 | HIGH | 7.5 | 2.1% | Sep 11, 2020 | An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16... |
| CVE-2020-25247 | HIGH | 7.5 | 1.5% | Sep 11, 2020 | An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Directory traversal exists for ... |
| CVE-2020-9731 | HIGH | 7.8 | 11.3% | Sep 10, 2020 | A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious ind... |
| CVE-2020-9730 | HIGH | 7.8 | 2.7% | Sep 10, 2020 | A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious ind... |
| CVE-2020-9729 | HIGH | 7.8 | 2.7% | Sep 10, 2020 | A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious ind... |
| CVE-2020-9728 | HIGH | 7.8 | 2.7% | Sep 10, 2020 | A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious ind... |
| CVE-2020-9727 | HIGH | 7.8 | 3.1% | Sep 10, 2020 | A memory corruption vulnerability exists in InDesign 15.1.1 (and earlier versions). Insecure handling of a malicious ind... |
| CVE-2020-9725 | HIGH | 7.8 | 3.7% | Sep 10, 2020 | Adobe FrameMaker version 2019.0.6 (and earlier versions) lacks proper validation of the length of user-supplied data pri... |
| CVE-2020-15170 | HIGH | 7 | 1.3% | Sep 10, 2020 | apollo-adminservice before version 1.7.1 does not implement access controls. If users expose apollo-adminservice to inte... |
| CVE-2020-9733 | HIGH | 7.5 | 3.8% | Sep 10, 2020 | An AEM java servlet in AEM versions 6.5.5.0 (and below) and 6.4.8.1 (and below) executes with the permissions of a high ... |
| CVE-2020-17408 | HIGH | 7.5 | 74.0% | Sep 10, 2020 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of NEC ExpressClu... |
| CVE-2020-14198 | HIGH | 7.5 | 3.4% | Sep 10, 2020 | Bitcoin Core 0.20.0 allows remote denial of service. |
| CVE-2020-6097 | HIGH | 7.5 | 2.4% | Sep 10, 2020 | An exploitable denial of service vulnerability exists in the atftpd daemon functionality of atftp 0.7.git20120829-3.1+b1... |
| CVE-2020-25221 | HIGH | 7.8 | 0.7% | Sep 10, 2020 | get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorr... |
| CVE-2020-7314 | HIGH | 7.8 | 0.4% | Sep 10, 2020 | Privilege Escalation Vulnerability in the installer in McAfee Data Exchange Layer (DXL) Client for Mac shipped with McAf... |
| CVE-2020-7312 | HIGH | 7.8 | 0.3% | Sep 10, 2020 | DLL Search Order Hijacking Vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6.6 allows local u... |
| CVE-2020-7311 | HIGH | 7 | 0.3% | Sep 10, 2020 | Privilege Escalation vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users t... |
| CVE-2020-24552 | HIGH | 7.2 | 1.4% | Sep 10, 2020 | Atop Technology industrial 3G/4G gateway contains Command Injection vulnerability. Due to insufficient input validation,... |
| CVE-2020-25220 | HIGH | 7.8 | 0.4% | Sep 10, 2020 | The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because s... |
| CVE-2020-25219 | HIGH | 7.5 | 4.3% | Sep 9, 2020 | url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion ... |
| CVE-2020-1913 | HIGH | 8.1 | 1.2% | Sep 9, 2020 | An Integer signedness error in the JavaScript Interpreter in Facebook Hermes prior to commit 2c7af7ec481ceffd0d14ce2d7c0... |
| CVE-2020-1912 | HIGH | 8.1 | 1.8% | Sep 9, 2020 | An out-of-bounds read/write vulnerability when executing lazily compiled inner generator functions in Facebook Hermes pr... |
| CVE-2020-15789 | HIGH | 8.1 | 0.5% | Sep 9, 2020 | A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cro... |
| CVE-2020-10056 | HIGH | 7.8 | 0.4% | Sep 9, 2020 | A vulnerability has been identified in License Management Utility (LMU) (All versions < V2.4). The lmgrd service of the ... |
| CVE-2020-10051 | HIGH | 7.8 | 0.3% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multiple services of the ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now