2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-3223MEDIUM4.9A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an authenticated, remote a...
CVE-2020-3222MEDIUM4.3A vulnerability in the web-based user interface (web UI) of Cisco IOS XE Software could allow an unauthenticated, adjace...
CVE-2020-3220MEDIUM6.8A vulnerability in the hardware crypto driver of Cisco IOS XE Software for Cisco 4300 Series Integrated Services Routers...
CVE-2020-3216MEDIUM6.8A vulnerability in Cisco IOS XE SD-WAN Software could allow an unauthenticated, physical attacker to bypass authenticati...
CVE-2020-3215MEDIUM6.7A vulnerability in the Virtual Services Container of Cisco IOS XE Software could allow an authenticated, local attacker ...
CVE-2020-3214MEDIUM6.7A vulnerability in Cisco IOS XE Software could allow an authenticated, local attacker to escalate their privileges to a ...
CVE-2020-3213MEDIUM6.7A vulnerability in the ROMMON of Cisco IOS XE Software could allow an authenticated, local attacker to elevate privilege...
CVE-2020-3210MEDIUM6.7A vulnerability in the CLI parsers of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Services Routers (I...
CVE-2020-3209MEDIUM6.8A vulnerability in software image verification in Cisco IOS XE Software could allow an unauthenticated, physical attacke...
CVE-2020-3208MEDIUM6.7A vulnerability in the image verification feature of Cisco IOS Software for Cisco 809 and 829 Industrial Integrated Serv...
CVE-2020-3207MEDIUM6.7A vulnerability in the processing of boot options of specific Cisco IOS XE Software switches could allow an authenticate...
CVE-2020-3206MEDIUM4.7A vulnerability in the handling of IEEE 802.11w Protected Management Frames (PMFs) of Cisco Catalyst 9800 Series Wireles...
CVE-2020-3204MEDIUM6.7A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS Software and Cisco IOS XE Software could all...
CVE-2020-3201MEDIUM6A vulnerability in the Tool Command Language (Tcl) interpreter of Cisco IOS Software and Cisco IOS XE Software could all...
CVE-2020-4035MEDIUM5.9In WatermelonDB (NPM package "@nozbe/watermelondb") before versions 0.15.1 and 0.16.2, a maliciously crafted record ID c...
CVE-2020-4307MEDIUM6.5IBM Security Guardium 11.1 could allow an attacker on the same network to gain access to the Solr dashboard and cause a ...
CVE-2020-4190MEDIUM6.7IBM Security Guardium 10.6, 11.0, and 11.1 contains hard-coded credentials, such as a password or cryptographic key, whi...
CVE-2020-4187MEDIUM5.3IBM Security Guardium 11.1 could disclose sensitive information on the login page that could aid in further attacks agai...
CVE-2020-4182MEDIUM6.1IBM Security Guardium 11.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav...
CVE-2020-13596MEDIUM6.1An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. Query parameters generated by the Django admin...
CVE-2020-13254MEDIUM5.9An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. In cases where a memcached backend does not pe...
CVE-2020-10749MEDIUM6A vulnerability was found in all versions of containernetworking/plugins before version 0.8.6, that allows malicious con...
CVE-2020-2199MEDIUM6.1Jenkins Subversion Partial Release Manager Plugin 1.0.1 and earlier does not escape the error message for the repository...
CVE-2020-2198MEDIUM6.5Jenkins Project Inheritance Plugin 19.08.02 and earlier does not redact encrypted secrets in the 'getConfigAsXML' API UR...
CVE-2020-2197MEDIUM4.3Jenkins Project Inheritance Plugin 19.08.02 and earlier does not require users to have Job/ExtendedRead permission to ac...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now