2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-8355MEDIUM4.9An internal product security audit of Lenovo XClarity Administrator (LXCA) prior to version 3.1.0 discovered the Windows...
CVE-2020-16120MEDIUM4.4Overlayfs did not properly perform permission checking when copying up files in an overlayfs and could be exploited from...
CVE-2020-13578HIGH7.5A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially c...
CVE-2020-13577HIGH7.5A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially c...
CVE-2020-13576CRITICAL9.8A code execution vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially cr...
CVE-2020-13575HIGH7.5A denial-of-service vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially...
CVE-2020-13574HIGH7.5A denial-of-service vulnerability exists in the WS-Security plugin functionality of Genivia gSOAP 2.8.107. A specially c...
CVE-2020-13565MEDIUM6.1An open redirect vulnerability exists in the return_page redirection functionality of phpGACL 3.3.7, OpenEMR 5.0.2 and O...
CVE-2020-13548HIGH8.8In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lea...
CVE-2020-7021MEDIUM4.9Elasticsearch versions before 7.10.0 and 6.8.14 have an information disclosure issue when audit logging and the emit_req...
CVE-2020-26299CRITICAL9.6ftp-srv is an open-source FTP server designed to be simple yet configurable. In ftp-srv before version 4.4.0 there is a ...
CVE-2020-5023HIGH7.5IBM Spectrum Protect Plus 10.1.0 through 10.1.7 could allow a remote user to inject arbitrary data iwhich could cause th...
CVE-2020-13546HIGH7.8In SoftMaker Software GmbH SoftMaker Office TextMaker 2021 (revision 1014), a specially crafted document can cause the d...
CVE-2020-24838HIGH7.5An integer overflow has been found in the the latest version of Issuer. The total issuedCount can be zero if the paramet...
CVE-2020-24837HIGH7.5An integer underflow has been found in the latest version of ZCFees. The variables 'currPeriodIdx' and 'lastPeriodExecId...
CVE-2020-29171MEDIUM6.1Cross-site scripting (XSS) vulnerability in admin/wp-security-blacklist-menu.php in the Tips and Tricks HQ All In One WP...
CVE-2020-36244CRITICAL9.8The daemon in GENIVI diagnostic log and trace (DLT), is vulnerable to a heap-based buffer overflow that could allow an a...
CVE-2020-28871CRITICAL9.8Remote code execution in Monitorr v1.7.6m in upload.php allows an unauthorized person to execute arbitrary code on the s...
CVE-2020-28870CRITICAL9.8In InoERP 0.7.2, an unauthorized attacker can execute arbitrary code on the server side due to lack of validations in /m...
CVE-2020-35125CRITICAL9.6A cross-site scripting (XSS) vulnerability in the forms component of Mautic before 3.2.4 allows remote attackers to inje...
CVE-2020-26196MEDIUM5.5Dell EMC PowerScale OneFS versions 8.1.0-9.1.0 contain a Backup/Restore Privilege implementation issue. A user with the ...
CVE-2020-26195MEDIUM5.3Dell EMC PowerScale OneFS versions 8.1.2 – 9.1.0 contain an issue where the OneFS SMB directory auto-create may erroneou...
CVE-2020-26194HIGH7.8Dell EMC PowerScale OneFS versions 8.1.2 and 8.2.2 contain an Incorrect Permission Assignment for a Critical Resource vu...
CVE-2020-26193HIGH7.8Dell EMC PowerScale OneFS versions 8.1.0 - 9.1.0 contain an improper input validation vulnerability. A user with the ISI...
CVE-2020-26192HIGH7.8Dell EMC PowerScale OneFS versions 8.2.0 - 9.1.0 contain a privilege escalation vulnerability. A non-admin user with eit...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now