2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36306 | MEDIUM | 6.1 | 0.7% | Apr 6, 2021 | Redmine before 4.0.7 and 4.1.x before 4.1.1 has XSS via the back_url field. |
| CVE-2020-17453 | MEDIUM | 6.1 | 26.1% | Apr 5, 2021 | WSO2 Management Console through 5.10 allows XSS via the carbon/admin/login.jsp msgId parameter. |
| CVE-2020-19596 | CRITICAL | 9.8 | 1.3% | Apr 5, 2021 | Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username. |
| CVE-2020-19595 | HIGH | 7.5 | 1.1% | Apr 5, 2021 | Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username. |
| CVE-2020-4997 | MEDIUM | 5.4 | 0.5% | Apr 5, 2021 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2020-4792 | MEDIUM | 5.4 | 0.5% | Apr 5, 2021 | IBM Edge 4.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i... |
| CVE-2020-27600 | CRITICAL | 9.8 | 13.9% | Apr 2, 2021 | HNAP1/control/SetMasterWLanSettings.php in D-Link D-Link Router DIR-846 DIR-846 A1_100.26 allows remote attackers to exe... |
| CVE-2020-21590 | MEDIUM | 4.3 | 1.3% | Apr 2, 2021 | Directory traversal in coreframe/app/template/admin/index.php in WUZHI CMS 4.1.0 allows attackers to list files in arbit... |
| CVE-2020-21588 | MEDIUM | 5.5 | 0.3% | Apr 2, 2021 | Buffer overflow in Core FTP LE v2.2 allows local attackers to cause a denial or service (crash) via a long string in the... |
| CVE-2020-21585 | CRITICAL | 9.8 | 3.2% | Apr 2, 2021 | Vulnerability in emlog v6.0.0 allows user to upload webshells via zip plugin module. |
| CVE-2020-11924 | MEDIUM | 5.5 | 0.3% | Apr 2, 2021 | An issue was discovered in WiZ Colors A60 1.14.0. Wi-Fi credentials are stored in cleartext in flash memory, which prese... |
| CVE-2020-11923 | MEDIUM | 5.5 | 0.3% | Apr 2, 2021 | An issue was discovered in WiZ Colors A60 1.14.0. API credentials are locally logged. |
| CVE-2020-9995 | MEDIUM | 6.1 | 0.6% | Apr 2, 2021 | An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in... |
| CVE-2020-9978 | MEDIUM | 4.5 | 0.5% | Apr 2, 2021 | This issue was addressed with improved setting propagation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macO... |
| CVE-2020-9975 | HIGH | 7.8 | 1.1% | Apr 2, 2021 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, tvOS ... |
| CVE-2020-9971 | HIGH | 7.8 | 1.1% | Apr 2, 2021 | A logic issue was addressed with improved validation. This issue is fixed in watchOS 7.0, tvOS 14.0, iOS 14.0 and iPadOS... |
| CVE-2020-9967 | HIGH | 7.8 | 2.3% | Apr 2, 2021 | Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Big Sur 11... |
| CVE-2020-9962 | HIGH | 7.8 | 1.2% | Apr 2, 2021 | A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, m... |
| CVE-2020-9960 | HIGH | 7.8 | 1.0% | Apr 2, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14... |
| CVE-2020-9956 | HIGH | 7.8 | 1.1% | Apr 2, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14... |
| CVE-2020-9955 | HIGH | 7.8 | 1.0% | Apr 2, 2021 | An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in watchOS 7.0, tvOS 14.0,... |
| CVE-2020-9930 | HIGH | 7.1 | 0.2% | Apr 2, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6, Secur... |
| CVE-2020-9926 | HIGH | 7.8 | 1.0% | Apr 2, 2021 | A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, t... |
| CVE-2020-29639 | MEDIUM | 5.5 | 0.7% | Apr 2, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0. Pro... |
| CVE-2020-29633 | HIGH | 8.8 | 1.1% | Apr 2, 2021 | An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Securit... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now