2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-14307 | MEDIUM | 6.5 | 1.2% | Jul 24, 2020 | A vulnerability was found in Wildfly's Enterprise Java Beans (EJB) versions shipped with Red Hat JBoss EAP 7, where Sess... |
| CVE-2020-14297 | MEDIUM | 6.5 | 1.2% | Jul 24, 2020 | A flaw was discovered in Wildfly's EJB Client as shipped with Red Hat JBoss EAP 7, where some specific EJB transaction o... |
| CVE-2020-14175 | MEDIUM | 5.4 | 1.2% | Jul 24, 2020 | Affected versions of Atlassian Confluence Server and Data Center allow remote attackers to inject arbitrary HTML or Java... |
| CVE-2020-15919 | MEDIUM | 6.1 | 0.9% | Jul 24, 2020 | A Reflected Cross Site Scripting (XSS) vulnerability was discovered in Mida eFramework through 2.9.0. |
| CVE-2020-15918 | MEDIUM | 5.4 | 0.6% | Jul 24, 2020 | Multiple Stored Cross Site Scripting (XSS) vulnerabilities were discovered in Mida eFramework through 2.9.0. |
| CVE-2020-7520 | MEDIUM | 4.7 | 0.9% | Jul 23, 2020 | A CWE-601: URL Redirection to Untrusted Site ('Open Redirect') vulnerability exists in Schneider Electric Software Updat... |
| CVE-2020-7517 | MEDIUM | 5.5 | 0.2% | Jul 23, 2020 | A CWE-312: Cleartext Storage of Sensitive Information vulnerability exists in Easergy Builder (Version 1.4.7.2 and older... |
| CVE-2020-11625 | MEDIUM | 5.3 | 1.4% | Jul 23, 2020 | An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Ind... |
| CVE-2020-11623 | MEDIUM | 6.8 | 0.4% | Jul 23, 2020 | An issue was discovered in AvertX Auto focus Night Vision HD Indoor/Outdoor IP Dome Camera HD838 and Night Vision HD Ind... |
| CVE-2020-8557 | MEDIUM | 5.5 | 0.5% | Jul 23, 2020 | The Kubernetes kubelet component in versions 1.1-1.16.12, 1.17.0-1.17.8 and 1.18.0-1.18.5 do not account for disk usage ... |
| CVE-2020-4447 | MEDIUM | 5.4 | 0.6% | Jul 23, 2020 | IBM FileNet Content Manager 5.5.3 and 5.5.4 is vulnerable to cross-site scripting. This vulnerability allows users to em... |
| CVE-2020-12638 | MEDIUM | 6.8 | 0.5% | Jul 23, 2020 | An encryption-bypass issue was discovered on Espressif ESP-IDF devices through 4.2, ESP8266_NONOS_SDK devices through 3.... |
| CVE-2020-10919 | MEDIUM | 5.9 | 1.6% | Jul 23, 2020 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of C-MORE HMI EA9... |
| CVE-2020-15912 | MEDIUM | 6.5 | 1.2% | Jul 23, 2020 | Tesla Model 3 vehicles allow attackers to open a door by leveraging access to a legitimate key card, and then using NFC ... |
| CVE-2020-15885 | MEDIUM | 5.4 | 0.9% | Jul 23, 2020 | A Cross-Site Scripting (XSS) vulnerability in the comment module before 4.0 for MunkiReport allows remote attackers to i... |
| CVE-2020-15883 | MEDIUM | 6.1 | 1.2% | Jul 23, 2020 | A Cross-Site Scripting (XSS) vulnerability in the managedinstalls module before 2.6 for MunkiReport allows remote attack... |
| CVE-2020-15881 | MEDIUM | 6.1 | 1.2% | Jul 23, 2020 | A Cross-Site Scripting (XSS) vulnerability in the munki_facts (aka Munki Conditions) module before 1.5 for MunkiReport a... |
| CVE-2020-15126 | MEDIUM | 6.5 | 1.1% | Jul 22, 2020 | In parser-server from version 3.5.0 and before 4.3.0, an authenticated user using the viewer GraphQL query can by pass a... |
| CVE-2020-15902 | MEDIUM | 6.1 | 35.1% | Jul 22, 2020 | Graph Explorer in Nagios XI before 5.7.2 allows XSS via the link url option. |
| CVE-2020-4399 | MEDIUM | 6.5 | 1.1% | Jul 22, 2020 | IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 could allow an authenticated user to send malformed requests to cause a denial ... |
| CVE-2020-4397 | MEDIUM | 5.9 | 0.6% | Jul 22, 2020 | IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 transmits sensitive information in plain text which could be obtained by an att... |
| CVE-2020-4369 | MEDIUM | 5.5 | 0.2% | Jul 22, 2020 | IBM Verify Gateway (IVG) 1.0.0 and 1.0.1 stores highly sensitive information in cleartext that could be obtained by a us... |
| CVE-2020-9686 | MEDIUM | 6.5 | 4.2% | Jul 22, 2020 | Adobe Photoshop versions Photoshop CC 2019, and Photoshop 2020 have an out-of-bounds read vulnerability. Successful expl... |
| CVE-2020-9679 | MEDIUM | 6.5 | 4.8% | Jul 22, 2020 | Adobe Prelude versions 9.0 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to a... |
| CVE-2020-9665 | MEDIUM | 6.1 | 1.4% | Jul 22, 2020 | Magento versions 1.14.4.5 and earlier, and 1.9.4.5 and earlier have a stored cross-site scripting vulnerability. Success... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now