2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-1182 | HIGH | 7.3 | 2.8% | Aug 17, 2020 | A remote code execution vulnerability exists in Microsoft Dynamics 365 for Finance and Operations (on-premises) version ... |
| CVE-2020-1046 | HIGH | 7.8 | 3.8% | Aug 17, 2020 | A remote code execution vulnerability exists when Microsoft .NET Framework processes input. An attacker who successfully... |
| CVE-2020-0604 | HIGH | 7.8 | 3.6% | Aug 17, 2020 | A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a... |
| CVE-2020-3500 | HIGH | 8.6 | 1.6% | Aug 17, 2020 | A vulnerability in the IPv6 implementation of Cisco StarOS could allow an unauthenticated, remote attacker to cause a de... |
| CVE-2020-3433 | HIGH | 7.8 | 10.0% | Aug 17, 2020 | A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c... |
| CVE-2020-3411 | HIGH | 7.5 | 2.2% | Aug 17, 2020 | A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive informat... |
| CVE-2020-3363 | HIGH | 8.6 | 1.8% | Aug 17, 2020 | A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u... |
| CVE-2020-24372 | HIGH | 7.5 | 1.5% | Aug 17, 2020 | LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in lj_err.c. |
| CVE-2020-24369 | HIGH | 7.5 | 1.7% | Aug 17, 2020 | ldebug.c in Lua 5.4.0 attempts to access debug information via the line hook of a stripped function, leading to a NULL p... |
| CVE-2020-24220 | HIGH | 8.8 | 2.4% | Aug 17, 2020 | ShopXO v1.8.1 has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands ... |
| CVE-2020-9241 | HIGH | 7 | 0.5% | Aug 17, 2020 | Huawei 5G Mobile WiFi E6878-370 with versions of 10.0.3.1(H563SP1C00),10.0.3.1(H563SP21C233) have an improper authorizat... |
| CVE-2020-8233 | HIGH | 8.8 | 4.4% | Aug 17, 2020 | A command injection vulnerability exists in EdgeSwitch firmware <v1.9.0 that allowed an authenticated read-only user to ... |
| CVE-2020-8210 | HIGH | 7.5 | 1.5% | Aug 17, 2020 | Insufficient protection of secrets in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6... |
| CVE-2020-8209 | HIGH | 7.5 | 48.7% | Aug 17, 2020 | Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix Xe... |
| CVE-2020-13122 | HIGH | 8.8 | 7.1% | Aug 17, 2020 | The novish command-line interface, included in NoviFlow NoviWare before NW500.2.12 and deployed on NoviSwitch devices, i... |
| CVE-2020-9242 | HIGH | 8.8 | 1.3% | Aug 17, 2020 | FusionCompute 8.0.0 have a command injection vulnerability. The software does not sufficiently validate certain paramete... |
| CVE-2020-4686 | HIGH | 8.1 | 1.6% | Aug 17, 2020 | IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform ... |
| CVE-2020-13941 | HIGH | 8.8 | 3.8% | Aug 17, 2020 | Reported in SOLR-14515 (private) and fixed in SOLR-14561 (public), released in Solr version 8.6.0. The Replication handl... |
| CVE-2020-17475 | HIGH | 7.5 | 0.9% | Aug 14, 2020 | Lack of authentication in the network relays used in MEGVII Koala 2.9.1-c3s allows attackers to grant physical access to... |
| CVE-2020-15694 | HIGH | 7.5 | 2.3% | Aug 14, 2020 | In Nim 1.2.4, the standard library httpClient fails to properly validate the server response. For example, httpClient.ge... |
| CVE-2020-9767 | HIGH | 7.8 | 0.8% | Aug 14, 2020 | A vulnerability related to Dynamic-link Library (“DLL”) loading in the Zoom Sharing Service would allow an attacker who ... |
| CVE-2020-9708 | HIGH | 7.5 | 2.9% | Aug 14, 2020 | The resolveRepositoryPath function doesn't properly validate user input and a malicious user may traverse to any valid G... |
| CVE-2020-15145 | HIGH | 8.2 | 0.4% | Aug 14, 2020 | In Composer-Setup for Windows before version 6.0.0, if the developer's computer is shared with other users, a local atta... |
| CVE-2020-7583 | HIGH | 7.8 | 0.3% | Aug 14, 2020 | A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All ve... |
| CVE-2020-22722 | HIGH | 7.8 | 0.5% | Aug 14, 2020 | Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now