2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3501 | MEDIUM | 4.1 | 1.0% | Aug 17, 2020 | Multiple vulnerabilities in the user interface of Cisco Webex Meetings Desktop App could allow an authenticated, remote ... |
| CVE-2020-3472 | MEDIUM | 5 | 1.1% | Aug 17, 2020 | A vulnerability in the contacts feature of Cisco Webex Meetings could allow an authenticated, remote attacker with a leg... |
| CVE-2020-3464 | MEDIUM | 4.8 | 0.6% | Aug 17, 2020 | A vulnerability in the web-based management interface of Cisco UCS Director could allow an authenticated, remote attacke... |
| CVE-2020-3463 | MEDIUM | 6.1 | 0.8% | Aug 17, 2020 | A vulnerability in the web-based management interface of Cisco Webex Meetings could allow an unauthenticated, remote att... |
| CVE-2020-3449 | MEDIUM | 4.3 | 1.1% | Aug 17, 2020 | A vulnerability in the Border Gateway Protocol (BGP) additional paths feature of Cisco IOS XR Software could allow an un... |
| CVE-2020-3448 | MEDIUM | 5.8 | 1.1% | Aug 17, 2020 | A vulnerability in an access control mechanism of Cisco Cyber Vision Center Software could allow an unauthenticated, rem... |
| CVE-2020-3447 | MEDIUM | 6.5 | 0.7% | Aug 17, 2020 | A vulnerability in the CLI of Cisco AsyncOS for Cisco Email Security Appliance (ESA) and Cisco AsyncOS for Cisco Content... |
| CVE-2020-3435 | MEDIUM | 5.5 | 0.3% | Aug 17, 2020 | A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c... |
| CVE-2020-3434 | MEDIUM | 5.5 | 0.5% | Aug 17, 2020 | A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c... |
| CVE-2020-3413 | MEDIUM | 4.3 | 0.7% | Aug 17, 2020 | A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote a... |
| CVE-2020-3412 | MEDIUM | 4.3 | 0.7% | Aug 17, 2020 | A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote a... |
| CVE-2020-3346 | MEDIUM | 6.1 | 0.8% | Aug 17, 2020 | A vulnerability in the web UI of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Mana... |
| CVE-2020-24371 | MEDIUM | 5.3 | 1.8% | Aug 17, 2020 | lgc.c in Lua 5.4.0 mishandles the interaction between barriers and the sweep phase, leading to a memory access violation... |
| CVE-2020-24370 | MEDIUM | 5.3 | 3.9% | Aug 17, 2020 | ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by get... |
| CVE-2020-9237 | MEDIUM | 6.7 | 0.2% | Aug 17, 2020 | Huawei smartphone Taurus-AL00B with versions earlier than 10.1.0.126(C00E125R5P3) have a user after free vulnerability. ... |
| CVE-2020-8232 | MEDIUM | 6.5 | 1.7% | Aug 17, 2020 | An information disclosure vulnerability exists in EdgeMax EdgeSwitch firmware v1.9.0 that allowed read only users could ... |
| CVE-2020-8230 | MEDIUM | 5.5 | 0.4% | Aug 17, 2020 | A memory corruption vulnerability exists in NextCloud Desktop Client v2.6.4 where missing ASLR and DEP protections in fo... |
| CVE-2020-8226 | MEDIUM | 5.8 | 1.0% | Aug 17, 2020 | A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF. |
| CVE-2020-8208 | MEDIUM | 6.1 | 1.0% | Aug 17, 2020 | Improper input validation in Citrix XenMobile Server 10.12 before RP1, Citrix XenMobile Server 10.11 before RP4, Citrix ... |
| CVE-2020-9103 | MEDIUM | 4.6 | 0.2% | Aug 17, 2020 | HUAWEI Mate 20 smartphones with 9.0.0.205(C00E205R2P1) have a logic error vulnerability. In a special scenario, the syst... |
| CVE-2020-17473 | MEDIUM | 5.9 | 0.7% | Aug 14, 2020 | Lack of mutual authentication in ZKTeco FaceDepot 7B 1.0.213 and ZKBiosecurity Server 1.0.0_20190723 allows an attacker ... |
| CVE-2020-15693 | MEDIUM | 6.5 | 2.0% | Aug 14, 2020 | In Nim 1.2.4, the standard library httpClient is vulnerable to a CR-LF injection in the target URL. An injection is poss... |
| CVE-2020-15141 | MEDIUM | 4.1 | 0.9% | Aug 14, 2020 | In openapi-python-client before version 0.5.3, there is a path traversal vulnerability. If a user generated a client usi... |
| CVE-2020-9229 | MEDIUM | 4.4 | 0.2% | Aug 14, 2020 | FusionCompute 8.0.0 has an information disclosure vulnerability. Due to the properly protection of certain information, ... |
| CVE-2020-12648 | MEDIUM | 6.1 | 1.8% | Aug 14, 2020 | A cross-site scripting (XSS) vulnerability in TinyMCE 5.2.1 and earlier allows remote attackers to inject arbitrary web ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now