2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15795 | HIGH | 8.1 | 6.4% | Apr 22, 2021 | A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ether... |
| CVE-2020-7861 | CRITICAL | 9.8 | 1.5% | Apr 22, 2021 | AnySupport (Remote support solution) before 2019.3.21.0 allows directory traversing because of swprintf function to copy... |
| CVE-2020-7858 | HIGH | 8.6 | 1.1% | Apr 22, 2021 | There is a directory traversing vulnerability in the download page url of AquaNPlayer 2.0.0.92. The IP of the download p... |
| CVE-2020-27569 | HIGH | 7.5 | 0.9% | Apr 21, 2021 | Arbitrary File Write exists in Aviatrix VPN Client 2.8.2 and earlier. The VPN service writes logs to a location that is ... |
| CVE-2020-27568 | HIGH | 7.5 | 1.6% | Apr 21, 2021 | Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found... |
| CVE-2020-36324 | MEDIUM | 6.1 | 0.6% | Apr 21, 2021 | Wikimedia Quarry analytics-quarry-web before 2020-12-15 allows Reflected XSS because app.py does not explicitly set the ... |
| CVE-2020-28973 | HIGH | 7.5 | 1.0% | Apr 21, 2021 | The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in... |
| CVE-2020-23932 | MEDIUM | 5.5 | 0.8% | Apr 21, 2021 | An issue was discovered in gpac before 1.0.1. A NULL pointer dereference exists in the function dump_isom_sdp located in... |
| CVE-2020-23931 | HIGH | 7.1 | 0.9% | Apr 21, 2021 | An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer ove... |
| CVE-2020-23930 | MEDIUM | 5.5 | 0.7% | Apr 21, 2021 | An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function nhmldump_send_header... |
| CVE-2020-23928 | HIGH | 7.1 | 0.9% | Apr 21, 2021 | An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer ove... |
| CVE-2020-23922 | HIGH | 7.1 | 2.2% | Apr 21, 2021 | An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read. |
| CVE-2020-23921 | HIGH | 7.1 | 0.9% | Apr 21, 2021 | An issue was discovered in fast_ber through v0.4. yy::yylex() in asn_compiler.hpp has a heap-based buffer over-read. |
| CVE-2020-23915 | MEDIUM | 5.5 | 0.9% | Apr 21, 2021 | An issue was discovered in cpp-peglib through v0.1.12. peg::resolve_escape_sequence() in peglib.h has a heap-based buffe... |
| CVE-2020-23914 | MEDIUM | 5.5 | 0.9% | Apr 21, 2021 | An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer dereference exists in the peg::AstOptimizer::optim... |
| CVE-2020-23912 | MEDIUM | 5.5 | 0.7% | Apr 21, 2021 | An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::Ge... |
| CVE-2020-23907 | CRITICAL | 9.8 | 2.6% | Apr 21, 2021 | An issue was discovered in retdec v3.3. In function canSplitFunctionOn() of ir_modifications.cpp, there is a possible ou... |
| CVE-2020-35982 | HIGH | 7.8 | 1.1% | Apr 21, 2021 | An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function gf_hint... |
| CVE-2020-35981 | HIGH | 7.8 | 1.1% | Apr 21, 2021 | An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function SetupWr... |
| CVE-2020-35980 | HIGH | 7.8 | 1.2% | Apr 21, 2021 | An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is a use-after-free in the function gf_isom_box_del() in ... |
| CVE-2020-35979 | HIGH | 7.8 | 1.2% | Apr 21, 2021 | An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is heap-based buffer overflow in the function gp_rtp_buil... |
| CVE-2020-7857 | CRITICAL | 9.8 | 1.0% | Apr 20, 2021 | A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command. This vulnerability ex... |
| CVE-2020-35314 | CRITICAL | 9.8 | 26.9% | Apr 20, 2021 | A remote code execution vulnerability in the installUpdateThemePluginAction function in index.php in WonderCMS 3.1.3, al... |
| CVE-2020-35313 | CRITICAL | 9.8 | 45.2% | Apr 20, 2021 | A server-side request forgery (SSRF) vulnerability in the addCustomThemePluginRepository function in index.php in Wonder... |
| CVE-2020-26197 | CRITICAL | 9.1 | 0.6% | Apr 20, 2021 | Dell PowerScale OneFS 8.1.0 - 9.1.0 contains an LDAP Provider inability to connect over TLSv1.2 vulnerability. It may ma... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now