2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15318 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/mysql chroot... |
| CVE-2020-15317 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account within the /opt/axess chroot... |
| CVE-2020-15316 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded ECDSA SSH key for the root account within the /opt/axess chro... |
| CVE-2020-15315 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account within the /opt/axess chroot... |
| CVE-2020-15314 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded RSA SSH key for the root account. |
| CVE-2020-15313 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded ECDSA SSH key for the root account. |
| CVE-2020-15312 | MEDIUM | 5.9 | 1.0% | Jun 29, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded DSA SSH key for the root account. |
| CVE-2020-8573 | MEDIUM | 6.5 | 1.3% | Jun 29, 2020 | The NetApp HCI H610C, H615C and H610S Baseboard Management Controllers (BMC) are shipped with a documented default accou... |
| CVE-2020-4557 | MEDIUM | 5.4 | 0.6% | Jun 29, 2020 | IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.5 and 8.6 are vulnerable to cro... |
| CVE-2020-13423 | MEDIUM | 4.8 | 1.4% | Jun 29, 2020 | Form Builder 2.1.0 for Magento has multiple XSS issues that can be exploited against Magento 2 admin accounts via the Cu... |
| CVE-2020-12635 | MEDIUM | 6.1 | 0.7% | Jun 29, 2020 | XSS exists in the WebForms Pro M2 extension before 2.9.17 for Magento 2 via the textarea field. |
| CVE-2020-12035 | MEDIUM | 4.9 | 0.2% | Jun 29, 2020 | Baxter PrismaFlex all versions, PrisMax all versions prior to 3.x, The PrismaFlex device contains a hard-coded service p... |
| CVE-2020-12024 | MEDIUM | 6.1 | 0.3% | Jun 29, 2020 | Baxter ExactaMix EM 2400 versions 1.10, 1.11, 1.13, 1.14 and ExactaMix EM1200 Versions 1.1, 1.2, 1.4 and 1.5 does not re... |
| CVE-2020-12020 | MEDIUM | 6.1 | 0.3% | Jun 29, 2020 | Baxter ExactaMix EM 2400 Versions 1.10, 1.11, and 1.13 and ExactaMix EM1200 Versions 1.1, 1.2, and 1.4 does not restrict... |
| CVE-2020-12012 | MEDIUM | 6.1 | 0.3% | Jun 29, 2020 | Baxter ExactaMix EM 2400 & EM 1200, Versions ExactaMix EM2400 Versions 1.10, 1.11, 1.13, 1.14, ExactaMix EM1200 Versions... |
| CVE-2020-8024 | MEDIUM | 5.3 | 0.5% | Jun 29, 2020 | A Incorrect Default Permissions vulnerability in the packaging of hylafax+ of openSUSE Leap 15.2, openSUSE Leap 15.1, op... |
| CVE-2020-15365 | MEDIUM | 6.5 | 1.3% | Jun 28, 2020 | LibRaw before 0.20-Beta3 has an out-of-bounds write in parse_exif() in metadata\exif_gps.cpp via an unrecognized AtomNam... |
| CVE-2020-15364 | MEDIUM | 6.1 | 3.7% | Jun 28, 2020 | The Nexos theme through 1.7 for WordPress allows top-map/?search_location= reflected XSS. |
| CVE-2020-15358 | MEDIUM | 5.5 | 1.0% | Jun 27, 2020 | In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow... |
| CVE-2020-4089 | MEDIUM | 6.5 | 1.2% | Jun 26, 2020 | HCL Notes is vulnerable to an information leakage vulnerability through its support for the 'mailto' protocol. This vuln... |
| CVE-2020-9584 | MEDIUM | 5.4 | 1.2% | Jun 26, 2020 | Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a ... |
| CVE-2020-9581 | MEDIUM | 6.1 | 1.5% | Jun 26, 2020 | Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a ... |
| CVE-2020-9577 | MEDIUM | 6.1 | 1.5% | Jun 26, 2020 | Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a ... |
| CVE-2020-9557 | MEDIUM | 5.5 | 2.6% | Jun 26, 2020 | Adobe Bridge versions 10.0.1 and earlier version have an out-of-bounds read vulnerability. Successful exploitation could... |
| CVE-2020-3809 | MEDIUM | 5.5 | 2.3% | Jun 26, 2020 | Adobe After Effects versions 17.0.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now