2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15798 | CRITICAL | 9.8 | 5.2% | Feb 9, 2021 | A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V16 Update 3a)... |
| CVE-2020-10048 | MEDIUM | 5.5 | 0.3% | Feb 9, 2021 | A vulnerability has been identified in SIMATIC PCS 7 (All versions), SIMATIC WinCC (All versions < V7.5 SP2). Due to an ... |
| CVE-2020-4996 | MEDIUM | 5.5 | 0.4% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 could allow a local user to obtain sensitive information via the... |
| CVE-2020-4995 | MEDIUM | 5.3 | 1.1% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 does not invalidate session after logout which could allow a use... |
| CVE-2020-4795 | HIGH | 8.2 | 1.7% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information to an unauthorized user usi... |
| CVE-2020-4791 | MEDIUM | 5.3 | 0.3% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 could allow an attacker to obtain sensitive information using ma... |
| CVE-2020-4790 | MEDIUM | 6.5 | 0.6% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 could allow a user to cause a denial of service due to improperl... |
| CVE-2020-27261 | HIGH | 8.8 | 7.6% | Feb 9, 2021 | The Omron CX-One Version 4.60 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to r... |
| CVE-2020-27259 | HIGH | 8.8 | 2.7% | Feb 9, 2021 | The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which m... |
| CVE-2020-27257 | HIGH | 7.8 | 1.8% | Feb 9, 2021 | This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplie... |
| CVE-2020-22841 | MEDIUM | 4.8 | 3.5% | Feb 9, 2021 | Stored XSS in b2evolution CMS version 6.11.6 and prior allows an attacker to perform malicious JavaScript code execution... |
| CVE-2020-22840 | MEDIUM | 6.1 | 13.9% | Feb 9, 2021 | Open redirect vulnerability in b2evolution CMS version prior to 6.11.6 allows an attacker to perform malicious open redi... |
| CVE-2020-16044 | HIGH | 8.8 | 1.3% | Feb 9, 2021 | Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-13462 | MEDIUM | 5.7 | 0.4% | Feb 9, 2021 | Insecure Direct Object Reference (IDOR) exists in Tufin SecureChange, affecting all versions prior to R20-2 GA. Fixed in... |
| CVE-2020-13461 | MEDIUM | 4.3 | 0.5% | Feb 9, 2021 | Username enumeration in present in Tufin SecureTrack. It's affecting all versions of SecureTrack. The vendor has decided... |
| CVE-2020-13460 | HIGH | 8.8 | 0.6% | Feb 9, 2021 | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities were present in Tufin SecureTrack, affecting all versions pri... |
| CVE-2020-13409 | MEDIUM | 5.9 | 0.4% | Feb 9, 2021 | Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is als... |
| CVE-2020-13408 | MEDIUM | 5.9 | 0.4% | Feb 9, 2021 | Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is als... |
| CVE-2020-13407 | MEDIUM | 5.9 | 0.4% | Feb 9, 2021 | Tufin SecureTrack < R20-2 GA contains reflected + stored XSS (as in, the value is reflected back to the user, but is als... |
| CVE-2020-24685 | HIGH | 8.6 | 1.6% | Feb 9, 2021 | An unauthenticated specially crafted packet sent by an attacker over the network will cause a denial-of-service (DoS) vu... |
| CVE-2020-29021 | MEDIUM | 4.8 | 0.6% | Feb 8, 2021 | A vulnerability in web UI input field of GateManager allows authenticated attacker to enter script tags that could cause... |
| CVE-2020-14391 | MEDIUM | 5.5 | 0.3% | Feb 8, 2021 | A flaw was found in the GNOME Control Center in Red Hat Enterprise Linux 8 versions prior to 8.2, where it improperly us... |
| CVE-2020-8590 | LOW | 3.3 | 0.3% | Feb 8, 2021 | Clustered Data ONTAP versions prior to 9.1P18 and 9.3P12 are susceptible to a vulnerability which could allow an attacke... |
| CVE-2020-8587 | MEDIUM | 5.5 | 0.4% | Feb 8, 2021 | OnCommand System Manager 9.x versions prior to 9.3P20 and 9.4 prior to 9.4P3 are susceptible to a vulnerability that cou... |
| CVE-2020-8578 | LOW | 3.3 | 0.3% | Feb 8, 2021 | Clustered Data ONTAP versions prior to 9.3P20 are susceptible to a vulnerability which could allow an attacker to discov... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now