2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-1182HIGH7.3A remote code execution vulnerability exists in Microsoft Dynamics 365 for Finance and Operations (on-premises) version ...
CVE-2020-1046HIGH7.8A remote code execution vulnerability exists when Microsoft .NET Framework processes input. An attacker who successfully...
CVE-2020-0604HIGH7.8A remote code execution vulnerability exists in Visual Studio Code when it process environment variables after opening a...
CVE-2020-3500HIGH8.6A vulnerability in the IPv6 implementation of Cisco StarOS could allow an unauthenticated, remote attacker to cause a de...
CVE-2020-3433HIGH7.8A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c...
CVE-2020-3411HIGH7.5A vulnerability in Cisco DNA Center software could allow an unauthenticated remote attacker access to sensitive informat...
CVE-2020-3363HIGH8.6A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u...
CVE-2020-24372HIGH7.5LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in lj_err.c.
CVE-2020-24369HIGH7.5ldebug.c in Lua 5.4.0 attempts to access debug information via the line hook of a stripped function, leading to a NULL p...
CVE-2020-24220HIGH8.8ShopXO v1.8.1 has a command execution vulnerability. Attackers can use this vulnerability to execute arbitrary commands ...
CVE-2020-9241HIGH7Huawei 5G Mobile WiFi E6878-370 with versions of 10.0.3.1(H563SP1C00),10.0.3.1(H563SP21C233) have an improper authorizat...
CVE-2020-8233HIGH8.8A command injection vulnerability exists in EdgeSwitch firmware <v1.9.0 that allowed an authenticated read-only user to ...
CVE-2020-8210HIGH7.5Insufficient protection of secrets in Citrix XenMobile Server 10.12 before RP3, Citrix XenMobile Server 10.11 before RP6...
CVE-2020-8209HIGH7.5Improper access control in Citrix XenMobile Server 10.12 before RP2, Citrix XenMobile Server 10.11 before RP4, Citrix Xe...
CVE-2020-13122HIGH8.8The novish command-line interface, included in NoviFlow NoviWare before NW500.2.12 and deployed on NoviSwitch devices, i...
CVE-2020-9242HIGH8.8FusionCompute 8.0.0 have a command injection vulnerability. The software does not sufficiently validate certain paramete...
CVE-2020-4686HIGH8.1IBM Spectrum Virtualize 8.3.1 could allow a remote user authenticated via LDAP to escalate their privileges and perform ...
CVE-2020-13941HIGH8.8Reported in SOLR-14515 (private) and fixed in SOLR-14561 (public), released in Solr version 8.6.0. The Replication handl...
CVE-2020-17475HIGH7.5Lack of authentication in the network relays used in MEGVII Koala 2.9.1-c3s allows attackers to grant physical access to...
CVE-2020-15694HIGH7.5In Nim 1.2.4, the standard library httpClient fails to properly validate the server response. For example, httpClient.ge...
CVE-2020-9767HIGH7.8A vulnerability related to Dynamic-link Library (“DLL”) loading in the Zoom Sharing Service would allow an attacker who ...
CVE-2020-9708HIGH7.5The resolveRepositoryPath function doesn't properly validate user input and a malicious user may traverse to any valid G...
CVE-2020-15145HIGH8.2In Composer-Setup for Windows before version 6.0.0, if the developer's computer is shared with other users, a local atta...
CVE-2020-7583HIGH7.8A vulnerability has been identified in Automation License Manager 5 (All versions), Automation License Manager 6 (All ve...
CVE-2020-22722HIGH7.8Rapid Software LLC Rapid SCADA 5.8.0 is affected by a local privilege escalation vulnerability in the ScadaAgentSvc.exe ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now