2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-11838MEDIUM5.4Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Management Center product, Affecting versions 2.6.1, 2....
CVE-2020-4051MEDIUM5.4In Dijit before versions 1.11.11, and greater than or equal to 1.12.0 and less than 1.12.9, and greater than or equal to...
CVE-2020-13652MEDIUM6.1An issue was discovered in DigDash 2018R2 before p20200528, 2019R1 before p20200528, 2019R2 before p20200430, and 2020R1...
CVE-2020-14155MEDIUM5.3libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring.
CVE-2020-14154MEDIUM4.8Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an e...
CVE-2020-14150MEDIUM5.5GNU Bison before 3.5.4 allows attackers to cause a denial of service (application crash). NOTE: there is a risk only if ...
CVE-2020-9076MEDIUM6.8HUAWEI P30;HUAWEI P30 Pro;Tony-AL00B smartphones with versions earlier than 10.1.0.135(C00E135R2P11); versions earlier t...
CVE-2020-13999MEDIUM5.5ScaleViewPortExtEx in libemf.cpp in libEMF (aka ECMA-234 Metafile Library) 1.0.12 allows an integer overflow and denial ...
CVE-2020-9427MEDIUM5OX Guard 2.10.3 and earlier allows SSRF.
CVE-2020-9426MEDIUM6.1OX Guard 2.10.3 and earlier allows XSS.
CVE-2020-9075MEDIUM6.5Huawei products Secospace USG6300;USG6300E with versions of V500R001C30,V500R001C50,V500R001C60,V500R001C80,V500R005C00,...
CVE-2020-1825MEDIUM6.5FusionAccess with versions earlier than 6.5.1.SPC002 have a Denial of Service (DoS) vulnerability. Due to insufficient v...
CVE-2020-1813MEDIUM6.8HUAWEI P30 smart phone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability...
CVE-2020-8675MEDIUM6.8Insufficient control flow management in firmware build and signing tool for Intel(R) Innovation Engine before version 1....
CVE-2020-8674MEDIUM5.3Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0...
CVE-2020-4477MEDIUM6.5IBM Spectrum Protect Plus 10.1.0 through 10.1.5 discloses highly sensitive information in plain text in the virgo log fi...
CVE-2020-4471MEDIUM6.5IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow an unauthenticated attacker to cause a denial of service or ...
CVE-2020-4406MEDIUM5.4IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum P...
CVE-2020-14146MEDIUM5.4KumbiaPHP through 1.1.1, in Development mode, allows XSS via the public/pages/kumbia PATH_INFO.
CVE-2020-0566MEDIUM6.8Improper Access Control in subsystem for Intel(R) TXE versions before 3.175 and 4.0.25 may allow an unauthenticated user...
CVE-2020-0545MEDIUM4.4Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Intel(R) TXE versions be...
CVE-2020-0543MEDIUM5.5Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated...
CVE-2020-0541MEDIUM6.7Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a pri...
CVE-2020-0539MEDIUM5.5Path traversal in subsystem for Intel(R) DAL software for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77, 12....
CVE-2020-0537MEDIUM4.9Improper input validation in subsystem for Intel(R) AMT versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.64 may allo...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now