2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6090 | HIGH | 7.2 | 2.1% | Jun 11, 2020 | An exploitable code execution vulnerability exists in the Web-Based Management (WBM) functionality of WAGO PFC 200 03.03... |
| CVE-2020-12712 | HIGH | 7.5 | 7.8% | Jun 11, 2020 | A vulnerability based on insecure user/password encryption in the JOE (job editor) component of SOS JobScheduler 1.12 an... |
| CVE-2020-5593 | HIGH | 8.8 | 1.2% | Jun 11, 2020 | Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a ... |
| CVE-2020-13855 | HIGH | 7.2 | 27.6% | Jun 11, 2020 | Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Repository Manag... |
| CVE-2020-13852 | HIGH | 7.2 | 27.6% | Jun 11, 2020 | Artica Pandora FMS 7.44 allows arbitrary file upload (leading to remote command execution) via the File Manager feature. |
| CVE-2020-13851 | HIGH | 8.8 | 91.1% | Jun 11, 2020 | Artica Pandora FMS 7.44 allows remote command execution via the events feature. |
| CVE-2020-13850 | HIGH | 7.5 | 2.2% | Jun 11, 2020 | Artica Pandora FMS 7.44 has inadequate access controls on a web folder. |
| CVE-2020-12850 | HIGH | 7 | 0.5% | Jun 11, 2020 | The following vulnerability applies only to the Pydio Cells Enterprise OVF version 2.0.4. Prior versions of the Pydio Ce... |
| CVE-2020-12713 | HIGH | 7.2 | 2.6% | Jun 11, 2020 | An issue was discovered in CipherMail Community Gateway and Professional/Enterprise Gateway 1.0.1 through 4.7.1-0 and Ci... |
| CVE-2020-11090 | HIGH | 7.5 | 1.7% | Jun 11, 2020 | In Indy Node 1.12.2, there is an Uncontrolled Resource Consumption vulnerability. Indy Node has a bug in TAA handling co... |
| CVE-2020-13900 | HIGH | 7.5 | 2.4% | Jun 10, 2020 | An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_sdp_preparse in sdp.c has a NUL... |
| CVE-2020-13899 | HIGH | 7.5 | 2.1% | Jun 10, 2020 | An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_process_incoming_request in jan... |
| CVE-2020-13898 | HIGH | 7.5 | 2.4% | Jun 10, 2020 | An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_sdp_process in sdp.c has a NULL... |
| CVE-2020-13238 | HIGH | 7.5 | 3.3% | Jun 10, 2020 | Mitsubishi MELSEC iQ-R Series PLCs with firmware 33 allow attackers to halt the industrial process by sending an unauthe... |
| CVE-2020-11622 | HIGH | 7.5 | 1.3% | Jun 10, 2020 | A vulnerability exists in Arista’s Cloud EOS VM / vEOS 4.23.2M and below releases in the 4.23.x train, 4.22.4M and below... |
| CVE-2020-10705 | HIGH | 7.5 | 1.2% | Jun 10, 2020 | A flaw was discovered in Undertow in versions before Undertow 2.1.1.Final where certain requests to the "Expect: 100-con... |
| CVE-2020-13906 | HIGH | 7.8 | 1.1% | Jun 10, 2020 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000038eb7. |
| CVE-2020-13905 | HIGH | 8.8 | 3.2% | Jun 10, 2020 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000038ed4. |
| CVE-2020-13445 | HIGH | 8.8 | 3.7% | Jun 10, 2020 | In Liferay Portal before 7.3.2 and Liferay DXP 7.0 before fix pack 92, 7.1 before fix pack 18, and 7.2 before fix pack 6... |
| CVE-2020-13223 | HIGH | 7.5 | 1.2% | Jun 10, 2020 | HashiCorp Vault and Vault Enterprise logged proxy environment variables that potentially included sensitive credentials.... |
| CVE-2020-2032 | HIGH | 7 | 0.2% | Jun 10, 2020 | A race condition vulnerability Palo Alto Networks GlobalProtect app on Windows allows a local limited Windows user to ex... |
| CVE-2020-2029 | HIGH | 7.2 | 1.8% | Jun 10, 2020 | An OS Command Injection vulnerability in the PAN-OS web management interface allows authenticated administrators to exec... |
| CVE-2020-2028 | HIGH | 7.2 | 1.8% | Jun 10, 2020 | An OS Command Injection vulnerability in PAN-OS management server allows authenticated administrators to execute arbitra... |
| CVE-2020-2027 | HIGH | 7.2 | 2.1% | Jun 10, 2020 | A buffer overflow vulnerability in the authd component of the PAN-OS management server allows authenticated administrato... |
| CVE-2020-2026 | HIGH | 8.8 | 0.5% | Jun 10, 2020 | A malicious guest compromised before a container creation (e.g. a malicious guest image or a guest running multiple cont... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now