2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36306MEDIUM6.1Redmine before 4.0.7 and 4.1.x before 4.1.1 has XSS via the back_url field.
CVE-2020-17453MEDIUM6.1WSO2 Management Console through 5.10 allows XSS via the carbon/admin/login.jsp msgId parameter.
CVE-2020-19596CRITICAL9.8Buffer overflow vulnerability in Core FTP Server v1.2 Build 583, via a crafted username.
CVE-2020-19595HIGH7.5Buffer overflow vulnerability in Core FTP Server v2 Build 697, via a crafted username.
CVE-2020-4997MEDIUM5.4IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2020-4792MEDIUM5.4IBM Edge 4.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code i...
CVE-2020-27600CRITICAL9.8HNAP1/control/SetMasterWLanSettings.php in D-Link D-Link Router DIR-846 DIR-846 A1_100.26 allows remote attackers to exe...
CVE-2020-21590MEDIUM4.3Directory traversal in coreframe/app/template/admin/index.php in WUZHI CMS 4.1.0 allows attackers to list files in arbit...
CVE-2020-21588MEDIUM5.5Buffer overflow in Core FTP LE v2.2 allows local attackers to cause a denial or service (crash) via a long string in the...
CVE-2020-21585CRITICAL9.8Vulnerability in emlog v6.0.0 allows user to upload webshells via zip plugin module.
CVE-2020-11924MEDIUM5.5An issue was discovered in WiZ Colors A60 1.14.0. Wi-Fi credentials are stored in cleartext in flash memory, which prese...
CVE-2020-11923MEDIUM5.5An issue was discovered in WiZ Colors A60 1.14.0. API credentials are locally logged.
CVE-2020-9995MEDIUM6.1An issue existed in the parsing of URLs. This issue was addressed with improved input validation. This issue is fixed in...
CVE-2020-9978MEDIUM4.5This issue was addressed with improved setting propagation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, macO...
CVE-2020-9975HIGH7.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Big Sur 11.0.1, tvOS ...
CVE-2020-9971HIGH7.8A logic issue was addressed with improved validation. This issue is fixed in watchOS 7.0, tvOS 14.0, iOS 14.0 and iPadOS...
CVE-2020-9967HIGH7.8Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Big Sur 11...
CVE-2020-9962HIGH7.8A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14.0, m...
CVE-2020-9960HIGH7.8An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14...
CVE-2020-9956HIGH7.8An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1, tvOS 14...
CVE-2020-9955HIGH7.8An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in watchOS 7.0, tvOS 14.0,...
CVE-2020-9930HIGH7.1An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.6, Secur...
CVE-2020-9926HIGH7.8A use after free issue was addressed with improved memory management. This issue is fixed in iOS 13.6 and iPadOS 13.6, t...
CVE-2020-29639MEDIUM5.5An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 14.0 and iPadOS 14.0. Pro...
CVE-2020-29633HIGH8.8An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.2, Securit...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now