2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-15795HIGH8.1A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ether...
CVE-2020-7861CRITICAL9.8AnySupport (Remote support solution) before 2019.3.21.0 allows directory traversing because of swprintf function to copy...
CVE-2020-7858HIGH8.6There is a directory traversing vulnerability in the download page url of AquaNPlayer 2.0.0.92. The IP of the download p...
CVE-2020-27569HIGH7.5Arbitrary File Write exists in Aviatrix VPN Client 2.8.2 and earlier. The VPN service writes logs to a location that is ...
CVE-2020-27568HIGH7.5Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found...
CVE-2020-36324MEDIUM6.1Wikimedia Quarry analytics-quarry-web before 2020-12-15 allows Reflected XSS because app.py does not explicitly set the ...
CVE-2020-28973HIGH7.5The ABUS Secvest wireless alarm system FUAA50000 (v3.01.17) fails to properly authenticate some requests to its built-in...
CVE-2020-23932MEDIUM5.5An issue was discovered in gpac before 1.0.1. A NULL pointer dereference exists in the function dump_isom_sdp located in...
CVE-2020-23931HIGH7.1An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer ove...
CVE-2020-23930MEDIUM5.5An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function nhmldump_send_header...
CVE-2020-23928HIGH7.1An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer ove...
CVE-2020-23922HIGH7.1An issue was discovered in giflib through 5.1.4. DumpScreen2RGB in gif2rgb.c has a heap-based buffer over-read.
CVE-2020-23921HIGH7.1An issue was discovered in fast_ber through v0.4. yy::yylex() in asn_compiler.hpp has a heap-based buffer over-read.
CVE-2020-23915MEDIUM5.5An issue was discovered in cpp-peglib through v0.1.12. peg::resolve_escape_sequence() in peglib.h has a heap-based buffe...
CVE-2020-23914MEDIUM5.5An issue was discovered in cpp-peglib through v0.1.12. A NULL pointer dereference exists in the peg::AstOptimizer::optim...
CVE-2020-23912MEDIUM5.5An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::Ge...
CVE-2020-23907CRITICAL9.8An issue was discovered in retdec v3.3. In function canSplitFunctionOn() of ir_modifications.cpp, there is a possible ou...
CVE-2020-35982HIGH7.8An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function gf_hint...
CVE-2020-35981HIGH7.8An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is an invalid pointer dereference in the function SetupWr...
CVE-2020-35980HIGH7.8An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is a use-after-free in the function gf_isom_box_del() in ...
CVE-2020-35979HIGH7.8An issue was discovered in GPAC version 0.8.0 and 1.0.1. There is heap-based buffer overflow in the function gp_rtp_buil...
CVE-2020-7857CRITICAL9.8A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command. This vulnerability ex...
CVE-2020-35314CRITICAL9.8A remote code execution vulnerability in the installUpdateThemePluginAction function in index.php in WonderCMS 3.1.3, al...
CVE-2020-35313CRITICAL9.8A server-side request forgery (SSRF) vulnerability in the addCustomThemePluginRepository function in index.php in Wonder...
CVE-2020-26197CRITICAL9.1Dell PowerScale OneFS 8.1.0 - 9.1.0 contains an LDAP Provider inability to connect over TLSv1.2 vulnerability. It may ma...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now