2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11838 | MEDIUM | 5.4 | 0.5% | Jun 16, 2020 | Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Management Center product, Affecting versions 2.6.1, 2.... |
| CVE-2020-4051 | MEDIUM | 5.4 | 1.2% | Jun 15, 2020 | In Dijit before versions 1.11.11, and greater than or equal to 1.12.0 and less than 1.12.9, and greater than or equal to... |
| CVE-2020-13652 | MEDIUM | 6.1 | 0.8% | Jun 15, 2020 | An issue was discovered in DigDash 2018R2 before p20200528, 2019R1 before p20200528, 2019R2 before p20200430, and 2020R1... |
| CVE-2020-14155 | MEDIUM | 5.3 | 4.2% | Jun 15, 2020 | libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring. |
| CVE-2020-14154 | MEDIUM | 4.8 | 1.1% | Jun 15, 2020 | Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an e... |
| CVE-2020-14150 | MEDIUM | 5.5 | 0.4% | Jun 15, 2020 | GNU Bison before 3.5.4 allows attackers to cause a denial of service (application crash). NOTE: there is a risk only if ... |
| CVE-2020-9076 | MEDIUM | 6.8 | 0.6% | Jun 15, 2020 | HUAWEI P30;HUAWEI P30 Pro;Tony-AL00B smartphones with versions earlier than 10.1.0.135(C00E135R2P11); versions earlier t... |
| CVE-2020-13999 | MEDIUM | 5.5 | 1.2% | Jun 15, 2020 | ScaleViewPortExtEx in libemf.cpp in libEMF (aka ECMA-234 Metafile Library) 1.0.12 allows an integer overflow and denial ... |
| CVE-2020-9427 | MEDIUM | 5 | 1.1% | Jun 15, 2020 | OX Guard 2.10.3 and earlier allows SSRF. |
| CVE-2020-9426 | MEDIUM | 6.1 | 1.2% | Jun 15, 2020 | OX Guard 2.10.3 and earlier allows XSS. |
| CVE-2020-9075 | MEDIUM | 6.5 | 0.6% | Jun 15, 2020 | Huawei products Secospace USG6300;USG6300E with versions of V500R001C30,V500R001C50,V500R001C60,V500R001C80,V500R005C00,... |
| CVE-2020-1825 | MEDIUM | 6.5 | 0.6% | Jun 15, 2020 | FusionAccess with versions earlier than 6.5.1.SPC002 have a Denial of Service (DoS) vulnerability. Due to insufficient v... |
| CVE-2020-1813 | MEDIUM | 6.8 | 0.2% | Jun 15, 2020 | HUAWEI P30 smart phone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability... |
| CVE-2020-8675 | MEDIUM | 6.8 | 0.4% | Jun 15, 2020 | Insufficient control flow management in firmware build and signing tool for Intel(R) Innovation Engine before version 1.... |
| CVE-2020-8674 | MEDIUM | 5.3 | 1.8% | Jun 15, 2020 | Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0... |
| CVE-2020-4477 | MEDIUM | 6.5 | 0.9% | Jun 15, 2020 | IBM Spectrum Protect Plus 10.1.0 through 10.1.5 discloses highly sensitive information in plain text in the virgo log fi... |
| CVE-2020-4471 | MEDIUM | 6.5 | 2.7% | Jun 15, 2020 | IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow an unauthenticated attacker to cause a denial of service or ... |
| CVE-2020-4406 | MEDIUM | 5.4 | 0.8% | Jun 15, 2020 | IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum P... |
| CVE-2020-14146 | MEDIUM | 5.4 | 0.6% | Jun 15, 2020 | KumbiaPHP through 1.1.1, in Development mode, allows XSS via the public/pages/kumbia PATH_INFO. |
| CVE-2020-0566 | MEDIUM | 6.8 | 0.5% | Jun 15, 2020 | Improper Access Control in subsystem for Intel(R) TXE versions before 3.175 and 4.0.25 may allow an unauthenticated user... |
| CVE-2020-0545 | MEDIUM | 4.4 | 0.4% | Jun 15, 2020 | Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Intel(R) TXE versions be... |
| CVE-2020-0543 | MEDIUM | 5.5 | 0.5% | Jun 15, 2020 | Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated... |
| CVE-2020-0541 | MEDIUM | 6.7 | 0.4% | Jun 15, 2020 | Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a pri... |
| CVE-2020-0539 | MEDIUM | 5.5 | 0.4% | Jun 15, 2020 | Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12.... |
| CVE-2020-0537 | MEDIUM | 4.9 | 1.6% | Jun 15, 2020 | Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allo... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now