2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-23974MEDIUM5.4Create-Project Manager 1.07 has Multi Persistent Cross-site Scripting and HTML injection in via Online chat, Social feed...
CVE-2020-4575MEDIUM6.1IBM WebSphere Application Server ND 8.5 and 9.0, and IBM WebSphere Virtual Enterprise 7.0 and 8.0 are vulnerable to cros...
CVE-2020-4175MEDIUM5.9IBM Security Guardium Insights 2.0.1 could allow a remote attacker to obtain sensitive information, caused by the failur...
CVE-2020-4172MEDIUM5.3IBM Security Guardium Insights 2.0.1 stores sensitive information in URL parameters. This may lead to information disclo...
CVE-2020-4171MEDIUM4.3IBM Security Guardium Insights 2.0.1 allows web pages to be stored locally which can be read by another user on the syst...
CVE-2020-4167MEDIUM6.5IBM Security Guardium Insights 2.0.1 could allow an attacker to obtain sensitive information or perform unauthorized act...
CVE-2020-4166MEDIUM5.3IBM Security Guardium Insights 2.0.1 could allow a remote attacker to obtain sensitive information when a detailed techn...
CVE-2020-14729MEDIUM5.4Vulnerability in SuiteCommerce Advanced (SCA) Sites component of Oracle NetSuite service. Supported versions that are af...
CVE-2020-14728MEDIUM5.4Vulnerability in the SuiteCommerce Advanced (SCA) component of Oracle NetSuite service. Supported versions that are affe...
CVE-2020-24599MEDIUM6.1An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks.
CVE-2020-24598MEDIUM6.1An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to a...
CVE-2020-15485MEDIUM5.5An issue was discovered on Nescomed Multipara Monitor M1000 devices. The onboard Flash memory stores data in cleartext, ...
CVE-2020-24548MEDIUM5.3Ericom Access Server 9.2.0 (for AccessNow and Ericom Blaze) allows SSRF to make outbound WebSocket connection requests o...
CVE-2020-23660MEDIUM5.4webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."
CVE-2020-23659MEDIUM5.4WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature.
CVE-2020-23658MEDIUM5.4PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php.
CVE-2020-13767MEDIUM5.9The Mitel MiCollab application before 9.1.332 for iOS could allow an unauthorized user to access restricted files and fo...
CVE-2020-3523MEDIUM5.4A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3522MEDIUM6.3A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3521MEDIUM6.5A vulnerability in a specific REST API of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated...
CVE-2020-3520MEDIUM5.5A vulnerability in Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, local attacker to obt...
CVE-2020-3518MEDIUM5.4A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3505MEDIUM6.5A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauth...
CVE-2020-3496MEDIUM5.3A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u...
CVE-2020-3491MEDIUM4.8A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now