2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7853 | CRITICAL | 9.8 | 0.8% | Mar 24, 2021 | An outbound read/write vulnerability exists in XPLATFORM that does not check offset input ranges, allowing out-of-range ... |
| CVE-2020-26283 | HIGH | 8.8 | 1.5% | Mar 24, 2021 | go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipf... |
| CVE-2020-26279 | HIGH | 8.1 | 1.7% | Mar 24, 2021 | go-ipfs is an open-source golang implementation of IPFS which is a global, versioned, peer-to-peer filesystem. In go-ipf... |
| CVE-2020-7839 | CRITICAL | 9.8 | 1.4% | Mar 24, 2021 | In MaEPSBroker 2.5.0.31 and prior, a command injection vulnerability caused by improper input validation checks when par... |
| CVE-2020-15809 | MEDIUM | 6.5 | 0.9% | Mar 24, 2021 | spxmanage on certain SpinetiX devices allows requests that access unintended resources because of SSRF and Path Traversa... |
| CVE-2020-36283 | HIGH | 8.8 | 0.7% | Mar 24, 2021 | HID OMNIKEY 5427 and OMNIKEY 5127 readers are vulnerable to CSRF when using the EEM driver (Ethernet Emulation Mode). By... |
| CVE-2020-35337 | CRITICAL | 9.8 | 1.9% | Mar 24, 2021 | ThinkSAAS before 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title para... |
| CVE-2020-5015 | HIGH | 7.5 | 2.5% | Mar 24, 2021 | IBM Elastic Storage System 6.0.0 through 6.0.1.2 and IBM Elastic Storage Server 5.3.0 through 5.3.6.2 could allow a remo... |
| CVE-2020-13612 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13611 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13610 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13609 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13608 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13607 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13606 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13605 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-13604 | — | — | — | Mar 23, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-24994 | HIGH | 8.8 | 2.6% | Mar 23, 2021 | Stack overflow in the parse_tag function in libass/ass_parse.c in libass before 0.15.0 allows remote attackers to cause ... |
| CVE-2020-12483 | MEDIUM | 6.1 | 0.7% | Mar 23, 2021 | The appstore before 8.12.0.0 exposes some of its components, and the attacker can cause remote download and install apps... |
| CVE-2020-7346 | HIGH | 7.8 | 0.4% | Mar 23, 2021 | Privilege Escalation vulnerability in McAfee Data Loss Prevention (DLP) for Windows prior to 11.6.100 allows a local, lo... |
| CVE-2020-28503 | CRITICAL | 9.8 | 1.7% | Mar 23, 2021 | The package copy-props before 2.0.5 are vulnerable to Prototype Pollution via the main functionality. |
| CVE-2020-9213 | HIGH | 7.5 | 0.7% | Mar 22, 2021 | There is a denial of service vulnerability in some huawei products. In specific scenarios, due to the improper handling ... |
| CVE-2020-9212 | MEDIUM | 6.5 | 0.6% | Mar 22, 2021 | There is a vulnerability in some version of USG9500 that the device improperly handles the information when a user logs ... |
| CVE-2020-9206 | MEDIUM | 6.7 | 0.2% | Mar 22, 2021 | The eUDC660 product has a resource management vulnerability. An attacker with high privilege needs to perform specific o... |
| CVE-2020-4882 | MEDIUM | 6.1 | 0.7% | Mar 22, 2021 | IBM Planning Analytics 2.0 could be vulnerable to a Server-Side Request Forgery (SSRF) attack by constucting URLs from u... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now