2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6868 | MEDIUM | 6.5 | 0.6% | Jun 1, 2020 | There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connecti... |
| CVE-2020-4023 | MEDIUM | 5.4 | 0.8% | Jun 1, 2020 | The review coverage resource in Atlassian Fisheye and Crucible before version 4.8.2 allows remote attackers to inject ar... |
| CVE-2020-4021 | MEDIUM | 5.4 | 1.0% | Jun 1, 2020 | Affected versions are: Before 8.5.5, and from 8.6.0 before 8.8.1 of Atlassian Jira Server and Data Center allow remote a... |
| CVE-2020-4017 | MEDIUM | 5.3 | 1.2% | Jun 1, 2020 | The /rest/jira-ril/1.0/jira-rest/applinks resource in the crucible-jira-ril plugin in Atlassian Fisheye and Crucible bef... |
| CVE-2020-4016 | MEDIUM | 5.3 | 1.2% | Jun 1, 2020 | The /plugins/servlet/jira-blockers/ resource in the crucible-jira-ril plugin in Atlassian Fisheye and Crucible before ve... |
| CVE-2020-4015 | MEDIUM | 4.3 | 1.0% | Jun 1, 2020 | The /json/fe/activeUserFinder.do resource in Altassian Fisheye and Crucible before version 4.8.1 allows remote attackers... |
| CVE-2020-4014 | MEDIUM | 4.3 | 0.8% | Jun 1, 2020 | The /profile/deleteWatch.do resource in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to r... |
| CVE-2020-4013 | MEDIUM | 5.4 | 0.6% | Jun 1, 2020 | The review resource in Atlassian Fisheye and Crucible before version 4.8.1 allows remote attackers to inject arbitrary H... |
| CVE-2020-8482 | MEDIUM | 5.5 | 0.3% | May 29, 2020 | Insecure storage of sensitive information in ABB Device Library Wizard versions 6.0.X, 6.0.3.1 and 6.0.3.2 allows unauth... |
| CVE-2020-7650 | MEDIUM | 6.5 | 1.1% | May 29, 2020 | All versions of snyk-broker after 4.72.0 including and before 4.73.1 are vulnerable to Arbitrary File Read. It allows ar... |
| CVE-2020-7648 | MEDIUM | 6.5 | 1.1% | May 29, 2020 | All versions of snyk-broker before 4.72.2 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user... |
| CVE-2020-7653 | MEDIUM | 6.5 | 1.1% | May 29, 2020 | All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user... |
| CVE-2020-7652 | MEDIUM | 6.5 | 1.7% | May 29, 2020 | All versions of snyk-broker before 4.80.0 are vulnerable to Arbitrary File Read. It allows arbitrary file reads for user... |
| CVE-2020-7651 | MEDIUM | 4.3 | 1.1% | May 29, 2020 | All versions of snyk-broker before 4.79.0 are vulnerable to Arbitrary File Read. It allows partial file reads for users ... |
| CVE-2020-3958 | MEDIUM | 5.5 | 0.4% | May 29, 2020 | VMware ESXi (6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), VMware Workstation (15.x before 15.5.... |
| CVE-2020-1809 | MEDIUM | 4.6 | 0.2% | May 29, 2020 | HUAWEI Mate 10 smartphones with versions earlier than 10.0.0.143(C00E143R2P4) have an information disclosure vulnerabili... |
| CVE-2020-11089 | MEDIUM | 5.5 | 1.2% | May 29, 2020 | In FreeRDP before 2.1.0, there is an out-of-bound read in irp functions (parallel_process_irp_create, serial_process_irp... |
| CVE-2020-11088 | MEDIUM | 5.4 | 1.5% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_NegotiateMessage. This has been fixed... |
| CVE-2020-11087 | MEDIUM | 5.4 | 1.4% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_AuthenticateMessage. This has been fi... |
| CVE-2020-11086 | MEDIUM | 5.4 | 1.4% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, there is an out-of-bound read in ntlm_read_ntlm_v2_client_challenge that reads u... |
| CVE-2020-1798 | MEDIUM | 4.6 | 0.2% | May 29, 2020 | HUAWEI P30 smartphones with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability... |
| CVE-2020-11039 | MEDIUM | 6.8 | 1.3% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, when using a manipulated server with USB redirection enabled (nearly) arbitrary ... |
| CVE-2020-11038 | MEDIUM | 5.4 | 1.3% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, an Integer Overflow to Buffer Overflow exists. When using /video redirection, a ... |
| CVE-2020-11019 | MEDIUM | 6.5 | 2.5% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application co... |
| CVE-2020-11018 | MEDIUM | 6.5 | 1.9% | May 29, 2020 | In FreeRDP less than or equal to 2.0.0, a possible resource exhaustion vulnerability can be performed. Malicious clients... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now