2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-25782 | CRITICAL | 9.8 | 2.9% | Jan 28, 2021 | An issue was discovered on Accfly Wireless Security IR Camera 720P System with software versions v3.10.73 through v4.15.... |
| CVE-2020-0237 | — | — | — | Jan 28, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-5428 | MEDIUM | 6 | 0.5% | Jan 27, 2021 | In applications using Spring Cloud Task 2.2.4.RELEASE and below, may be vulnerable to SQL injection when exercising cert... |
| CVE-2020-5427 | HIGH | 7.2 | 1.1% | Jan 27, 2021 | In Spring Cloud Data Flow, versions 2.6.x prior to 2.6.5, versions 2.5.x prior 2.5.4, an application is vulnerable to SQ... |
| CVE-2020-4952 | HIGH | 8.8 | 2.0% | Jan 27, 2021 | IBM Security Guardium 11.2 could allow an authenticated user to gain root access due to improper access control. IBM X-F... |
| CVE-2020-4865 | MEDIUM | 5.4 | 0.7% | Jan 27, 2021 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2020-4855 | MEDIUM | 5.4 | 0.7% | Jan 27, 2021 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2020-4789 | MEDIUM | 6.5 | 2.6% | Jan 27, 2021 | IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 could allow a remote attac... |
| CVE-2020-4787 | LOW | 2.3 | 0.3% | Jan 27, 2021 | IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server si... |
| CVE-2020-4786 | MEDIUM | 4.3 | 0.5% | Jan 27, 2021 | IBM QRadar SIEM 7.4.2 GA to 7.4.2 Patch 1, 7.4.0 to 7.4.1 Patch 1, and 7.3.0 to 7.3.3 Patch 5 is vulnerable to server si... |
| CVE-2020-4547 | MEDIUM | 5.4 | 0.8% | Jan 27, 2021 | IBM Jazz Foundation products could allow a remote attacker to hijack the clicking action of the victim. By persuading a ... |
| CVE-2020-4524 | MEDIUM | 5.4 | 0.7% | Jan 27, 2021 | IBM Jazz Foundation products is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary J... |
| CVE-2020-4189 | MEDIUM | 4.3 | 0.6% | Jan 27, 2021 | IBM Security Guardium 11.2 discloses sensitive information in the response headers that could be used in further attacks... |
| CVE-2020-23361 | CRITICAL | 9.8 | 1.2% | Jan 27, 2021 | phpList 3.5.3 allows type juggling for login bypass because == is used instead of === for password hashes, which mishand... |
| CVE-2020-23360 | CRITICAL | 9.8 | 1.2% | Jan 27, 2021 | oscommerce v2.3.4.1 has a functional problem in user registration and password rechecking, where a non-identical passwor... |
| CVE-2020-23359 | CRITICAL | 9.8 | 1.2% | Jan 27, 2021 | WeBid 1.2.2 admin/newuser.php has an issue with password rechecking during registration because it uses a loose comparis... |
| CVE-2020-23356 | HIGH | 7.5 | 1.0% | Jan 27, 2021 | dmin/kernel/api/login.class.phpin in nibbleblog v3.7.1c allows type juggling for login bypass because == is used instead... |
| CVE-2020-23355 | HIGH | 7.5 | 1.0% | Jan 27, 2021 | ** PRODUCT NOT SUPPORTED WHEN ASSIGNED ** Codiad 2.8.4 /componetns/user/class.user.php:Authenticate() is vulnerable in m... |
| CVE-2020-23352 | HIGH | 7.5 | 1.1% | Jan 27, 2021 | Z-BlogPHP 1.6.0 Valyria is affected by incorrect access control. PHP loose comparison and a magic hash can be used to by... |
| CVE-2020-16115 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-16114 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-16113 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-16112 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-16111 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
| CVE-2020-16110 | — | — | — | Jan 27, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was n... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now