2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-3490MEDIUM4.9A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica...
CVE-2020-3485MEDIUM6.3A vulnerability in the role-based access control (RBAC) functionality of the web management software of Cisco Vision Dyn...
CVE-2020-3484MEDIUM5.3A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenti...
CVE-2020-3466MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco DNA Center software could allow an unauthenticat...
CVE-2020-3440MEDIUM6.5A vulnerability in Cisco Webex Meetings Desktop App for Windows could allow an unauthenticated, remote attacker to overw...
CVE-2020-3439MEDIUM4.8A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3389MEDIUM4.4A vulnerability in the installation component of Cisco Hyperflex HX-Series Software could allow an authenticated, local ...
CVE-2020-3152MEDIUM6.7A vulnerability in Cisco Connected Mobile Experiences (CMX) could allow an authenticated, local attacker with administra...
CVE-2020-3151MEDIUM6.7A vulnerability in the CLI of Cisco Connected Mobile Experiences (CMX) could allow an authenticated, local attacker with...
CVE-2020-23657MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
CVE-2020-23656MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Content."
CVE-2020-23655MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
CVE-2020-23654MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) via the module "Shop."
CVE-2020-5927MEDIUM6.1In versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, and 14.1.0-14.1.2.6, BIG-IP ASM Configuration utility Stored-Cross Site Sc...
CVE-2020-24661MEDIUM5.9GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS ce...
CVE-2020-15486MEDIUM6.5An issue was discovered on Dr Trust ECG Pen 2.00.08 devices. Because the Bluetooth LE support is implemented without a r...
CVE-2020-15483MEDIUM6.8An issue was discovered on Nescomed Multipara Monitor M1000 devices. The physical UART debug port provides a shell, with...
CVE-2020-13821MEDIUM5.4An issue was discovered in HiveMQ Broker Control Center 4.3.2. A crafted clientid parameter in an MQTT packet (sent to t...
CVE-2020-5924MEDIUM5.3In BIG-IP APM versions 12.1.0-12.1.5.1 and 11.6.1-11.6.5.2, RADIUS authentication leaks memory when the username for aut...
CVE-2020-5923MEDIUM5.4In BIG-IP versions 15.0.0-15.1.0.4, 14.1.0-14.1.2.6, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1 and BIG-IQ ve...
CVE-2020-5920MEDIUM4.3In versions 15.0.0-15.1.0.5, 14.1.0-14.1.2.7, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, a vulnerability in ...
CVE-2020-5917MEDIUM5.9In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6....
CVE-2020-5916MEDIUM6.8In BIG-IP versions 15.1.0-15.1.0.4 and 15.0.0-15.0.1.3 the Certificate Administrator user role and higher privileged rol...
CVE-2020-5915MEDIUM6.1In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6....
CVE-2020-24316MEDIUM6.1WP Plugin Rednumber Admin Menu v1.1 and lower does not sanitize the value of the "role" GET parameter before echoing it ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now