2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-6868MEDIUM6.5There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connecti...
CVE-2020-4023MEDIUM5.4The review coverage resource in Atlassian Fisheye and Crucible before version 4.8.2 allows remote attackers to inject ar...
CVE-2020-4021MEDIUM5.4Affected versions are: Before 8.5.5, and from 8.6.0 before 8.8.1 of Atlassian Jira Server and Data Center allow remote a...
CVE-2020-4017MEDIUM5.3The /rest/jira-ril/1.0/jira-rest/applinks resource in the crucible-jira-ril plugin in Atlassian Fisheye and Crucible bef...
CVE-2020-4016MEDIUM5.3The /plugins/servlet/jira-blockers/ resource in the crucible-jira-ril plugin in Atlassian Fisheye and Crucible before ve...
CVE-2020-4015MEDIUM4.3The /json/fe/activeUserFinder.do resource in Altassian Fisheye and Crucible before version 4.8.1 allows remote attackers...
CVE-2020-4014MEDIUM4.3The /profile/deleteWatch.do resource in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to r...
CVE-2020-4013MEDIUM5.4The review resource in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to inject arbitrary H...
CVE-2020-8482MEDIUM5.5Insecure storage of sensitive information in ABB Device Library Wizard versions 6.0.X, 6.0.3.1 and 6.0.3.2 allows unauth...
CVE-2020-7650MEDIUM6.5All versions of snyk-broker after 4.72.0 including and before 4.73.1 are vulnerable to Arbitrary File Read. It allows ar...
CVE-2020-7648MEDIUM6.5All versions of snyk-broker before 4.72.2 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user...
CVE-2020-7653MEDIUM6.5All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user...
CVE-2020-7652MEDIUM6.5All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user...
CVE-2020-7651MEDIUM4.3All versions of snyk-broker before 4.79.0 are vulnerable to Arbitrary File Read. It allows partial file reads for users ...
CVE-2020-3958MEDIUM5.5VMware ESXi (6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), VMware Workstation (15.x before 15.5....
CVE-2020-1809MEDIUM4.6HUAWEI Mate 10 smartphones with versions earlier than 10.0.0.143(C00E143R2P4) have an information disclosure vulnerabili...
CVE-2020-11089MEDIUM5.5In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp...
CVE-2020-11088MEDIUM5.4In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed...
CVE-2020-11087MEDIUM5.4In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. This has been fi...
CVE-2020-11086MEDIUM5.4In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads u...
CVE-2020-1798MEDIUM4.6HUAWEI P30 smartphones with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability...
CVE-2020-11039MEDIUM6.8In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled (nearly) arbitrary ...
CVE-2020-11038MEDIUM5.4In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. When using /video redirection, a ...
CVE-2020-11019MEDIUM6.5In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application co...
CVE-2020-11018MEDIUM6.5In FreeRDP less than or equal to 2.0.0, a possible resource exhaustion vulnerability can be performed. Malicious clients...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now