2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-9740MEDIUM5.4AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by...
CVE-2020-9738MEDIUM4.8AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by...
CVE-2020-9737MEDIUM4.8AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by...
CVE-2020-9736MEDIUM4.8AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by...
CVE-2020-9735MEDIUM4.8AEM versions 6.5.5.0 (and below), 6.4.8.1 (and below), 6.3.3.8 (and below) and 6.2 SP1-CFP20 (and below) are affected by...
CVE-2020-9734MEDIUM5.4The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.1 (and below) is affected by a stored XSS vulnerability ...
CVE-2020-4578MEDIUM5.4IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows...
CVE-2020-24582MEDIUM6.1Zulip Desktop before 5.4.3 allows XSS because string escaping is mishandled during composition of the HTML for the user ...
CVE-2020-10773MEDIUM4.4A stack information leak flaw was found in s390/s390x in the Linux kernel’s memory manager functionality, where it incor...
CVE-2020-5780MEDIUM5.3Missing Authentication for Critical Function in Icegram Email Subscribers & Newsletters Plugin for WordPress prior to ve...
CVE-2020-24739MEDIUM6.5A CSRF vulnerability was found in iCMS v7.0.0 in the background deletion administrator account. When missing the CSRF_TO...
CVE-2020-7315MEDIUM6.7DLL Injection Vulnerability in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users to execute arbitrary code...
CVE-2020-24655MEDIUM5.1A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to pote...
CVE-2020-15791MEDIUM6.5A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All ver...
CVE-2020-15790MEDIUM5.3A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). If configured in an insecure manner,...
CVE-2020-15788MEDIUM6.1A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web applica...
CVE-2020-15785MEDIUM5.3A vulnerability has been identified in Siveillance Video Client (All versions). In environments where Windows NTLM authe...
CVE-2020-15784MEDIUM5.3A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). Insecure storage of sensitive inform...
CVE-2020-2039MEDIUM5.3An uncontrolled resource consumption vulnerability in Palo Alto Networks PAN-OS allows for a remote unauthenticated user...
CVE-2020-14292MEDIUM5.7In the COVIDSafe application through 1.0.21 for Android, unsafe use of the Bluetooth transport option in the GATT connec...
CVE-2020-25211MEDIUM6In the Linux kernel through 5.8.7, local attackers able to inject conntrack netlink configuration could overflow a local...
CVE-2020-24794MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Kentico before 12.0.75.
CVE-2020-24198MEDIUM6.1A persistent cross-site scripting vulnerability in Sourcecodester Stock Management System v1.0 allows remote attackers t...
CVE-2020-6324MEDIUM6.1SAP Netweaver AS ABAP(BSP Test Application sbspext_table), version-700,701,720,730,731,740,750,751,752,753,754,755, allo...
CVE-2020-6311MEDIUM6.5Banking services from SAP 9.0 (Bank Analyzer), version - 500, and SAP S/4HANA for financial products subledger, version ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now