2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-3501MEDIUM4.1Multiple vulnerabilities in the user interface of Cisco Webex Meetings Desktop App could allow an authenticated, remote ...
CVE-2020-3472MEDIUM5A vulnerability in the contacts feature of Cisco Webex Meetings could allow an authenticated, remote attacker with a leg...
CVE-2020-3464MEDIUM4.8A vulnerability in the web-based management interface of Cisco UCS Director could allow an authenticated, remote attacke...
CVE-2020-3463MEDIUM6.1A vulnerability in the web-based management interface of Cisco Webex Meetings could allow an unauthenticated, remote att...
CVE-2020-3449MEDIUM4.3A vulnerability in the Border Gateway Protocol (BGP) additional paths feature of Cisco IOS XR Software could allow an un...
CVE-2020-3448MEDIUM5.8A vulnerability in an access control mechanism of Cisco Cyber Vision Center Software could allow an unauthenticated, rem...
CVE-2020-3447MEDIUM6.5A vulnerability in the CLI of Cisco AsyncOS for Cisco Email Security Appliance (ESA) and Cisco AsyncOS for Cisco Content...
CVE-2020-3435MEDIUM5.5A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c...
CVE-2020-3434MEDIUM5.5A vulnerability in the interprocess communication (IPC) channel of Cisco AnyConnect Secure Mobility Client for Windows c...
CVE-2020-3413MEDIUM4.3A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote a...
CVE-2020-3412MEDIUM4.3A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote a...
CVE-2020-3346MEDIUM6.1A vulnerability in the web UI of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Mana...
CVE-2020-24371MEDIUM5.3lgc.c in Lua 5.4.0 mishandles the interaction between barriers and the sweep phase, leading to a memory access violation...
CVE-2020-24370MEDIUM5.3ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by get...
CVE-2020-9237MEDIUM6.7Huawei smartphone Taurus-AL00B with versions earlier than 10.1.0.126(C00E125R5P3) have a user after free vulnerability. ...
CVE-2020-8232MEDIUM6.5An information disclosure vulnerability exists in EdgeMax EdgeSwitch firmware v1.9.0 that allowed read only users could ...
CVE-2020-8230MEDIUM5.5A memory corruption vulnerability exists in NextCloud Desktop Client v2.6.4 where missing ASLR and DEP protections in fo...
CVE-2020-8226MEDIUM5.8A vulnerability exists in phpBB <v3.2.10 and <v3.3.1 which allowed remote image dimensions check to be used to SSRF.
CVE-2020-8208MEDIUM6.1Improper input validation in Citrix XenMobile Server 10.12 before RP1, Citrix XenMobile Server 10.11 before RP4, Citrix ...
CVE-2020-9103MEDIUM4.6HUAWEI Mate 20 smartphones with 9.0.0.205(C00E205R2P1) have a logic error vulnerability. In a special scenario, the syst...
CVE-2020-17473MEDIUM5.9Lack of mutual authentication in ZKTeco FaceDepot 7B 1.0.213 and ZKBiosecurity Server 1.0.0_20190723 allows an attacker ...
CVE-2020-15693MEDIUM6.5In Nim 1.2.4, the standard library httpClient is vulnerable to a CR-LF injection in the target URL. An injection is poss...
CVE-2020-15141MEDIUM4.1In openapi-python-client before version 0.5.3, there is a path traversal vulnerability. If a user generated a client usi...
CVE-2020-9229MEDIUM4.4FusionCompute 8.0.0 has an information disclosure vulnerability. Due to the properly protection of certain information, ...
CVE-2020-12648MEDIUM6.1A cross-site scripting (XSS) vulnerability in TinyMCE 5.2.1 and earlier allows remote attackers to inject arbitrary web ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now