2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9740 | MEDIUM | 5.4 | 1.9% | Sep 10, 2020 | AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by... |
| CVE-2020-9738 | MEDIUM | 4.8 | 1.7% | Sep 10, 2020 | AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by... |
| CVE-2020-9737 | MEDIUM | 4.8 | 1.7% | Sep 10, 2020 | AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by... |
| CVE-2020-9736 | MEDIUM | 4.8 | 1.8% | Sep 10, 2020 | AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by... |
| CVE-2020-9735 | MEDIUM | 4.8 | 1.8% | Sep 10, 2020 | AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by... |
| CVE-2020-9734 | MEDIUM | 5.4 | 1.9% | Sep 10, 2020 | The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.1 (and below) is affected by a stored XSS vulnerability ... |
| CVE-2020-4578 | MEDIUM | 5.4 | 0.7% | Sep 10, 2020 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows... |
| CVE-2020-24582 | MEDIUM | 6.1 | 0.7% | Sep 10, 2020 | Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user ... |
| CVE-2020-10773 | MEDIUM | 4.4 | 0.4% | Sep 10, 2020 | A stack information leak flaw was found in s390/s390x in the Linux kernel’s memory manager functionality, where it incor... |
| CVE-2020-5780 | MEDIUM | 5.3 | 1.6% | Sep 10, 2020 | Missing Authentication for Critical Function in Icegram Email Subscribers & Newsletters Plugin for WordPress prior to ve... |
| CVE-2020-24739 | MEDIUM | 6.5 | 0.4% | Sep 10, 2020 | A CSRF vulnerability was found in iCMS v7.0.0 in the background deletion administrator account. When missing the CSRF_TO... |
| CVE-2020-7315 | MEDIUM | 6.7 | 0.5% | Sep 10, 2020 | DLL Injection Vulnerability in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users to execute arbitrary code... |
| CVE-2020-24655 | MEDIUM | 5.1 | 0.2% | Sep 10, 2020 | A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to pote... |
| CVE-2020-15791 | MEDIUM | 6.5 | 0.7% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All ver... |
| CVE-2020-15790 | MEDIUM | 5.3 | 0.9% | Sep 9, 2020 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). If configured in an insecure manner,... |
| CVE-2020-15788 | MEDIUM | 6.1 | 0.7% | Sep 9, 2020 | A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web applica... |
| CVE-2020-15785 | MEDIUM | 5.3 | 0.6% | Sep 9, 2020 | A vulnerability has been identified in Siveillance Video Client (All versions). In environments where Windows NTLM authe... |
| CVE-2020-15784 | MEDIUM | 5.3 | 0.6% | Sep 9, 2020 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). Insecure storage of sensitive inform... |
| CVE-2020-2039 | MEDIUM | 5.3 | 46.4% | Sep 9, 2020 | An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user... |
| CVE-2020-14292 | MEDIUM | 5.7 | 1.3% | Sep 9, 2020 | In the COVIDSafe application through 1.0.21 for Android, unsafe use of the Bluetooth transport option in the GATT connec... |
| CVE-2020-25211 | MEDIUM | 6 | 0.6% | Sep 9, 2020 | In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local... |
| CVE-2020-24794 | MEDIUM | 6.1 | 0.9% | Sep 9, 2020 | Cross Site Scripting (XSS) vulnerability in Kentico before 12.0.75. |
| CVE-2020-24198 | MEDIUM | 6.1 | 0.8% | Sep 9, 2020 | A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers t... |
| CVE-2020-6324 | MEDIUM | 6.1 | 0.9% | Sep 9, 2020 | SAP Netweaver AS ABAP(BSP Test Application sbspext_table), version-700,701,720,730,731,740,750,751,752,753,754,755, allo... |
| CVE-2020-6311 | MEDIUM | 6.5 | 1.0% | Sep 9, 2020 | Banking services from SAP 9.0 (Bank Analyzer), version - 500, and SAP S/4HANA for financial products subledger, version ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now