2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-25782CRITICAL9.8An issue was discovered on Accfly Wireless Security IR Camera 720P System with software versions v3.10.73 through v4.15....
CVE-2020-0237Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-5428MEDIUM6In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising cert...
CVE-2020-5427HIGH7.2In Spring Cloud Data Flow, versions 2.6.x prior to 2.6.5, versions 2.5.x prior 2.5.4, an application is vulnerable to SQ...
CVE-2020-4952HIGH8.8IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-F...
CVE-2020-4865MEDIUM5.4IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2020-4855MEDIUM5.4IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2020-4789MEDIUM6.5IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 could allow a remote attac...
CVE-2020-4787LOW2.3IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server si...
CVE-2020-4786MEDIUM4.3IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server si...
CVE-2020-4547MEDIUM5.4IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a ...
CVE-2020-4524MEDIUM5.4IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J...
CVE-2020-4189MEDIUM4.3IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks...
CVE-2020-23361CRITICAL9.8phpList 3.5.3 allows type juggling for login bypass because == is used instead of === for password hashes, which mishand...
CVE-2020-23360CRITICAL9.8oscommerce v2.3.4.1 has a functional problem in user registration and password rechecking, where a non-identical passwor...
CVE-2020-23359CRITICAL9.8WeBid 1.2.2 admin/newuser.php has an issue with password rechecking during registration because it uses a loose comparis...
CVE-2020-23356HIGH7.5dmin/kernel/api/login.class.phpin in nibbleblog v3.7.1c allows type juggling for login bypass because == is used instead...
CVE-2020-23355HIGH7.5** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in m...
CVE-2020-23352HIGH7.5Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to by...
CVE-2020-16115Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-16114Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-16113Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-16112Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-16111Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...
CVE-2020-16110Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now