2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-23974 | MEDIUM | 5.4 | 0.6% | Aug 27, 2020 | Create-Project Manager 1.07 has Multi Persistent Cross-site Scripting and HTML injection in via Online chat, Social feed... |
| CVE-2020-4575 | MEDIUM | 6.1 | 0.9% | Aug 27, 2020 | IBM WebSphere Application Server ND 8.5 and 9.0, and IBM WebSphere Virtual Enterprise 7.0 and 8.0 are vulnerable to cros... |
| CVE-2020-4175 | MEDIUM | 5.9 | 1.6% | Aug 27, 2020 | IBM Security Guardium Insights 2.0.1 could allow a remote attacker to obtain sensitive information, caused by the failur... |
| CVE-2020-4172 | MEDIUM | 5.3 | 1.2% | Aug 27, 2020 | IBM Security Guardium Insights 2.0.1 stores sensitive information in URL parameters. This may lead to information disclo... |
| CVE-2020-4171 | MEDIUM | 4.3 | 1.0% | Aug 27, 2020 | IBM Security Guardium Insights 2.0.1 allows web pages to be stored locally which can be read by another user on the syst... |
| CVE-2020-4167 | MEDIUM | 6.5 | 1.0% | Aug 27, 2020 | IBM Security Guardium Insights 2.0.1 could allow an attacker to obtain sensitive information or perform unauthorized act... |
| CVE-2020-4166 | MEDIUM | 5.3 | 1.3% | Aug 27, 2020 | IBM Security Guardium Insights 2.0.1 could allow a remote attacker to obtain sensitive information when a detailed techn... |
| CVE-2020-14729 | MEDIUM | 5.4 | 0.6% | Aug 27, 2020 | Vulnerability in SuiteCommerce Advanced (SCA) Sites component of Oracle NetSuite service. Supported versions that are af... |
| CVE-2020-14728 | MEDIUM | 5.4 | 0.7% | Aug 27, 2020 | Vulnerability in the SuiteCommerce Advanced (SCA) component of Oracle NetSuite service. Supported versions that are affe... |
| CVE-2020-24599 | MEDIUM | 6.1 | 1.2% | Aug 26, 2020 | An issue was discovered in Joomla! before 3.9.21. Lack of escaping in mod_latestactions allows XSS attacks. |
| CVE-2020-24598 | MEDIUM | 6.1 | 1.2% | Aug 26, 2020 | An issue was discovered in Joomla! before 3.9.21. Lack of input validation in the vote feature of com_content leads to a... |
| CVE-2020-15485 | MEDIUM | 5.5 | 0.2% | Aug 26, 2020 | An issue was discovered on Nescomed Multipara Monitor M1000 devices. The onboard Flash memory stores data in cleartext, ... |
| CVE-2020-24548 | MEDIUM | 5.3 | 1.7% | Aug 26, 2020 | Ericom Access Server 9.2.0 (for AccessNow and Ericom Blaze) allows SSRF to make outbound WebSocket connection requests o... |
| CVE-2020-23660 | MEDIUM | 5.4 | 0.5% | Aug 26, 2020 | webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search." |
| CVE-2020-23659 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature. |
| CVE-2020-23658 | MEDIUM | 5.4 | 0.5% | Aug 26, 2020 | PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php. |
| CVE-2020-13767 | MEDIUM | 5.9 | 0.9% | Aug 26, 2020 | The Mitel MiCollab application before 9.1.332 for iOS could allow an unauthorized user to access restricted files and fo... |
| CVE-2020-3523 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3522 | MEDIUM | 6.3 | 0.8% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3521 | MEDIUM | 6.5 | 1.8% | Aug 26, 2020 | A vulnerability in a specific REST API of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated... |
| CVE-2020-3520 | MEDIUM | 5.5 | 0.3% | Aug 26, 2020 | A vulnerability in Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, local attacker to obt... |
| CVE-2020-3518 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3505 | MEDIUM | 6.5 | 0.6% | Aug 26, 2020 | A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauth... |
| CVE-2020-3496 | MEDIUM | 5.3 | 1.7% | Aug 26, 2020 | A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u... |
| CVE-2020-3491 | MEDIUM | 4.8 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now