2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-2030HIGH7.2An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to exe...
CVE-2020-6938HIGH7.5A sensitive information disclosure vulnerability in Tableau Server 10.5, 2018.x, 2019.x, 2020.x released before June 26,...
CVE-2020-5839HIGH7.5Symantec Endpoint Detection And Response, prior to 4.4, may be susceptible to an information disclosure issue, which is ...
CVE-2020-11994HIGH7.5Server-Side Template Injection and arbitrary file disclosure on Camel templating components
CVE-2020-5764HIGH8.8MX Player Android App versions prior to v1.24.5, are vulnerable to a directory traversal vulnerability when user is usin...
CVE-2020-3973HIGH8.8The VeloCloud Orchestrator does not apply correct input validation which allows for blind SQL-injection. A malicious act...
CVE-2020-15008HIGH7.5A SQLi exists in the probe code of all Connectwise Automate versions before 2020.7 or 2019.12. A SQL Injection in the pr...
CVE-2020-12736HIGH7.2Code42 environments with on-premises server versions 7.0.4 and earlier allow for possible remote code execution. When an...
CVE-2020-15515HIGH8.8The turn extension through 0.3.2 for TYPO3 allows Remote Code Execution.
CVE-2020-15579HIGH7.5An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factor...
CVE-2020-15576HIGH7.5SolarWinds Serv-U File Server before 15.2.1 allows information disclosure via an HTTP response.
CVE-2020-15574HIGH7.5SolarWinds Serv-U File Server before 15.2.1 mishandles the Same-Site cookie attribute, aka Case Number 00331893.
CVE-2020-10745HIGH7.5A flaw was found in all Samba versions before 4.10.17, before 4.11.11 and before 4.12.4 in the way it processed NetBios ...
CVE-2020-15567HIGH7.8An issue was discovered in Xen through 4.13.x, allowing Intel guest OS users to gain privileges or cause a denial of ser...
CVE-2020-15565HIGH8.8An issue was discovered in Xen through 4.13.x, allowing x86 Intel HVM guest OS users to cause a host OS denial of servic...
CVE-2020-5600HIGH7.5TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier insta...
CVE-2020-5598HIGH7.5TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier insta...
CVE-2020-5597HIGH7.5TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier insta...
CVE-2020-5596HIGH7.5TCP/IP function included in the firmware of Mitsubishi Electric GOT2000 series (CoreOS with version -Y and earlier insta...
CVE-2020-15507HIGH7.5An arbitrary file reading vulnerability in MobileIron Core versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, ...
CVE-2020-4075HIGH7.5In Electron before versions 7.2.4, 8.2.4, and 9.0.0-beta21, arbitrary local file read is possible by defining unsafe win...
CVE-2020-9395HIGH8An issue was discovered on Realtek RTL8195AM, RTL8711AM, RTL8711AF, and RTL8710AF devices before 2.0.6. A stack-based bu...
CVE-2020-9262HIGH7.8HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a use after free vulnerability. There is a condit...
CVE-2020-9261HIGH7.8HUAWEI Mate 30 with versions earlier than 10.1.0.150(C00E136R5P3) have a type confusion vulnerability. The system does n...
CVE-2020-9100HIGH7.8Earlier than HiSuite 10.1.0.500 have a DLL hijacking vulnerability. This vulnerability exists due to some DLL file is lo...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now