2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9307 | MEDIUM | 6.5 | 0.6% | Feb 11, 2021 | Hirschmann OS2, RSP, and RSPE devices before HiOS 08.3.00 allow a denial of service. An unauthenticated, adjacent attack... |
| CVE-2020-35498 | HIGH | 7.5 | 8.0% | Feb 11, 2021 | A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a mal... |
| CVE-2020-25493 | HIGH | 7.5 | 1.1% | Feb 11, 2021 | Oclean Mobile Application 2.1.2 communicates with an external website using HTTP so it is possible to eavesdrop the netw... |
| CVE-2020-1717 | LOW | 2.7 | 0.8% | Feb 11, 2021 | A flaw was found in Keycloak 7.0.1. A logged in user can do an account email enumeration attack. |
| CVE-2020-13186 | MEDIUM | 6.5 | 0.3% | Feb 11, 2021 | An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web f... |
| CVE-2020-13185 | MEDIUM | 6.5 | 1.0% | Feb 11, 2021 | Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were acce... |
| CVE-2020-10734 | LOW | 3.3 | 0.2% | Feb 11, 2021 | A vulnerability was found in keycloak in the way that the OIDC logout endpoint does not have CSRF protection. Versions s... |
| CVE-2020-4768 | MEDIUM | 5.4 | 0.5% | Feb 11, 2021 | IBM Case Manager 5.2 and 5.3 and IBM Business Automation Workflow 18.0, 19.0, and 20.0 are vulnerable to cross-site scri... |
| CVE-2020-8030 | MEDIUM | 4.4 | 0.2% | Feb 11, 2021 | A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapT... |
| CVE-2020-8029 | MEDIUM | 4 | 0.3% | Feb 11, 2021 | A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local at... |
| CVE-2020-8027 | MEDIUM | 6.6 | 0.3% | Feb 11, 2021 | A Insecure Temporary File vulnerability in openldap2 of SUSE Linux Enterprise Server 15-LTSS, SUSE Linux Enterprise Serv... |
| CVE-2020-8031 | MEDIUM | 5.4 | 0.7% | Feb 11, 2021 | A Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Open Build Servi... |
| CVE-2020-27874 | HIGH | 8.8 | 2.0% | Feb 10, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tencent WeChat 7.0.18.... |
| CVE-2020-27871 | HIGH | 7.2 | 90.4% | Feb 10, 2021 | This vulnerability allows remote attackers to create arbitrary files on affected installations of SolarWinds Orion Platf... |
| CVE-2020-27870 | MEDIUM | 6.5 | 4.3% | Feb 10, 2021 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of SolarWinds Ori... |
| CVE-2020-28596 | HIGH | 7.8 | 1.4% | Feb 10, 2021 | A stack-based buffer overflow vulnerability exists in the Objparser::objparse() functionality of Prusa Research PrusaSli... |
| CVE-2020-28595 | HIGH | 7.8 | 1.5% | Feb 10, 2021 | An out-of-bounds write vulnerability exists in the Obj.cpp load_obj() functionality of Prusa Research PrusaSlicer 2.2.0 ... |
| CVE-2020-27250 | HIGH | 7.8 | 0.9% | Feb 10, 2021 | In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the d... |
| CVE-2020-24842 | MEDIUM | 6.1 | 0.7% | Feb 10, 2021 | PNPSCADA 2.200816204020 allows cross-site scripting (XSS), which can execute arbitrary JavaScript in the victim's browse... |
| CVE-2020-13585 | HIGH | 8.8 | 1.9% | Feb 10, 2021 | An out-of-bounds write vulnerability exists in the PSD Header processing functionality of Accusoft ImageGear 19.8. A spe... |
| CVE-2020-13583 | HIGH | 7.5 | 1.9% | Feb 10, 2021 | A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafte... |
| CVE-2020-13581 | HIGH | 7.8 | 1.0% | Feb 10, 2021 | In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the d... |
| CVE-2020-13572 | HIGH | 8.8 | 1.9% | Feb 10, 2021 | A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8... |
| CVE-2020-13571 | HIGH | 8.8 | 2.0% | Feb 10, 2021 | An out-of-bounds write vulnerability exists in the SGI RLE decompression functionality of Accusoft ImageGear 19.8. A spe... |
| CVE-2020-13561 | HIGH | 8.8 | 1.9% | Feb 10, 2021 | An out-of-bounds write vulnerability exists in the TIFF parser of Accusoft ImageGear 19.8. A specially crafted malformed... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now