2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-22987MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attac...
CVE-2020-22986MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attac...
CVE-2020-22985MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attac...
CVE-2020-22984MEDIUM6.1Cross-Site Scripting (XSS) vulnerability in MicroStrategy Web SDK 10.11 and earlier, allows remote unauthenticated attac...
CVE-2020-19212MEDIUM4.9SQL Injection vulnerability in admin/group_list.php in piwigo v2.9.5, via the group parameter to delete.
CVE-2020-23618MEDIUM6.1A reflected cross site scripting (XSS) vulnerability in Xtend Voice Logger 1.0 allows attackers to execute arbitrary web...
CVE-2020-23617MEDIUM6.1A cross site scripting (XSS) vulnerability in the error page of Totolink N200RE and N100RE Routers 2.0 allows attackers ...
CVE-2020-14122MEDIUM5.5Some Xiaomi phones have information leakage vulnerabilities, and some of them may be able to forge a specific identity d...
CVE-2020-14121MEDIUM5.5A business logic vulnerability exists in Mi App Store. The vulnerability is caused by incomplete permission checks of th...
CVE-2020-14118MEDIUM6.1An intent redirection vulnerability in the Mi App Store product. This vulnerability is caused by the Mi App Store does n...
CVE-2020-14117MEDIUM5.3A improper permission configuration vulnerability in Xiaomi Content Center APP. This vulnerability is caused by the lack...
CVE-2020-25167MEDIUM6.5OSIsoft PI Vision 2020 versions prior to 3.5.0 could disclose information to a user with insufficient privileges for an ...
CVE-2020-13495MEDIUM5.5An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles file offsets in binary USD files. A specially...
CVE-2020-25160MEDIUM6.3Improper access controls in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactp...
CVE-2020-25158MEDIUM6.1A reflected cross-site scripting (XSS) vulnerability in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, ...
CVE-2020-25154MEDIUM6.1An open redirect vulnerability in the administrative interface of the B. Braun Melsungen AG SpaceCom device Version L81/...
CVE-2020-16238MEDIUM6.7A vulnerability in the configuration import mechanism of the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier,...
CVE-2020-29653MEDIUM6.1Froxlor through 0.10.22 does not perform validation on user input passed in the customermail GET parameter. The value of...
CVE-2020-27375MEDIUM6.5Dr Trust USA iCheck Connect BP Monitor BP Testing 118 version 1.2.1 is vulnerable to Transmitting Write Requests and Cha...
CVE-2020-29013MEDIUM5.4An improper input validation vulnerability in the sniffer interface of FortiSandbox before 3.2.2 may allow an authentica...
CVE-2020-28847MEDIUM5.4Cross Site Scripting (XSS) vulnerability in xCss Valine v1.4.14 via the nick parameter to /classes/Comment.
CVE-2020-14479MEDIUM5.3Sensitive information can be obtained through the handling of serialized data. The issue results from the lack of proper...
CVE-2020-20096MEDIUM6.5Whatsapp iOS 2.19.80 and prior and Android 2.19.222 and prior user interface does not properly represent URI messages to...
CVE-2020-20095MEDIUM6.5iMessage (Messages app) iOS 12.4 and prior user interface does not properly represent URI messages to the user, which re...
CVE-2020-20094MEDIUM6.5Instagram iOS 106.0 and prior and Android 107.0.0.11 and prior user interface does not properly represent URI messages t...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now