2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-9307MEDIUM6.5Hirschmann OS2, RSP, and RSPE devices before HiOS 08.3.00 allow a denial of service. An unauthenticated, adjacent attack...
CVE-2020-35498HIGH7.5A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a mal...
CVE-2020-25493HIGH7.5Oclean Mobile Application 2.1.2 communicates with an external website using HTTP so it is possible to eavesdrop the netw...
CVE-2020-1717LOW2.7A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack.
CVE-2020-13186MEDIUM6.5An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web f...
CVE-2020-13185MEDIUM6.5Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were acce...
CVE-2020-10734LOW3.3A vulnerability was found in keycloak in the way that the OIDC logout endpoint does not have CSRF protection. Versions s...
CVE-2020-4768MEDIUM5.4IBM Case Manager 5.2 and 5.3 and IBM Business Automation Workflow 18.0, 19.0, and 20.0 are vulnerable to cross-site scri...
CVE-2020-8030MEDIUM4.4A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapT...
CVE-2020-8029MEDIUM4A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local at...
CVE-2020-8027MEDIUM6.6A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Serv...
CVE-2020-8031MEDIUM5.4A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Open Build Servi...
CVE-2020-27874HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tencent WeChat 7.0.18....
CVE-2020-27871HIGH7.2This vulnerability allows remote attackers to create arbitrary files on affected installations of SolarWinds Orion Platf...
CVE-2020-27870MEDIUM6.5This vulnerability allows remote attackers to disclose sensitive information on affected installations of SolarWinds Ori...
CVE-2020-28596HIGH7.8A stack-based buffer overflow vulnerability exists in the Objparser::objparse() functionality of Prusa Research PrusaSli...
CVE-2020-28595HIGH7.8An out-of-bounds write vulnerability exists in the Obj.cpp load_obj() functionality of Prusa Research PrusaSlicer 2.2.0 ...
CVE-2020-27250HIGH7.8In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the d...
CVE-2020-24842MEDIUM6.1PNPSCADA 2.200816204020 allows cross-site scripting (XSS), which can execute arbitrary JavaScript in the victim's browse...
CVE-2020-13585HIGH8.8An out-of-bounds write vulnerability exists in the PSD Header processing functionality of Accusoft ImageGear 19.8. A spe...
CVE-2020-13583HIGH7.5A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafte...
CVE-2020-13581HIGH7.8In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the d...
CVE-2020-13572HIGH8.8A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8...
CVE-2020-13571HIGH8.8An out-of-bounds write vulnerability exists in the SGI RLE decompression functionality of Accusoft ImageGear 19.8. A spe...
CVE-2020-13561HIGH8.8An out-of-bounds write vulnerability exists in the TIFF parser of Accusoft ImageGear 19.8. A specially crafted malformed...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now