2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3221 | HIGH | 8.6 | 1.5% | Jun 3, 2020 | A vulnerability in the Flexible NetFlow Version 9 packet processor of Cisco IOS XE Software for Cisco Catalyst 9800 Seri... |
| CVE-2020-3219 | HIGH | 8.8 | 3.3% | Jun 3, 2020 | A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to inject and execu... |
| CVE-2020-3218 | HIGH | 7.2 | 4.9% | Jun 3, 2020 | A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker with administrative... |
| CVE-2020-3217 | HIGH | 8.8 | 1.0% | Jun 3, 2020 | A vulnerability in the Topology Discovery Service of Cisco One Platform Kit (onePK) in Cisco IOS Software, Cisco IOS XE ... |
| CVE-2020-3212 | HIGH | 7.2 | 2.6% | Jun 3, 2020 | A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrar... |
| CVE-2020-3211 | HIGH | 7.2 | 3.5% | Jun 3, 2020 | A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated, remote attacker to execute arbitrar... |
| CVE-2020-3205 | HIGH | 8.8 | 0.9% | Jun 3, 2020 | A vulnerability in the implementation of the inter-VM channel of Cisco IOS Software for Cisco 809 and 829 Industrial Int... |
| CVE-2020-3203 | HIGH | 8.6 | 0.8% | Jun 3, 2020 | A vulnerability in the locally significant certificate (LSC) provisioning feature of Cisco Catalyst 9800 Series Wireless... |
| CVE-2020-3200 | HIGH | 7.7 | 1.7% | Jun 3, 2020 | A vulnerability in the Secure Shell (SSH) server code of Cisco IOS Software and Cisco IOS XE Software could allow an aut... |
| CVE-2020-3199 | HIGH | 8.8 | 0.7% | Jun 3, 2020 | Multiple vulnerabilities in the Cisco IOx application environment of Cisco 809 and 829 Industrial Integrated Services Ro... |
| CVE-2020-13787 | HIGH | 7.5 | 0.9% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices have Cleartext Transmission of Sensitive Information. |
| CVE-2020-13786 | HIGH | 8.8 | 0.7% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices allow CSRF. |
| CVE-2020-13785 | HIGH | 7.5 | 0.6% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices have Inadequate Encryption Strength. |
| CVE-2020-13784 | HIGH | 7.5 | 1.3% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices have a predictable seed in a Pseudo-Random Number Generator. |
| CVE-2020-13783 | HIGH | 7.5 | 0.9% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices have Cleartext Storage of Sensitive Information. |
| CVE-2020-13782 | HIGH | 8.8 | 27.1% | Jun 3, 2020 | D-Link DIR-865L Ax 1.20B01 Beta devices allow Command Injection. |
| CVE-2020-12846 | HIGH | 8 | 2.6% | Jun 3, 2020 | Zimbra before 8.8.15 Patch 10 and 9.x before 9.0.0 Patch 3 allows remote code execution via an avatar file. There is pot... |
| CVE-2020-4180 | HIGH | 8.8 | 3.0% | Jun 3, 2020 | IBM Security Guardium 11.1 could allow a remote authenticated attacker to execute arbitrary commands on the system. By s... |
| CVE-2020-7117 | HIGH | 7.2 | 3.3% | Jun 3, 2020 | The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the atta... |
| CVE-2020-7116 | HIGH | 7.2 | 3.3% | Jun 3, 2020 | The ClearPass Policy Manager WebUI administrative interface has an authenticated command remote execution. When the atta... |
| CVE-2020-2200 | HIGH | 8.8 | 2.4% | Jun 3, 2020 | Jenkins Play Framework Plugin 1.0.2 and earlier lets users specify the path to the `play` command on the Jenkins master ... |
| CVE-2020-2196 | HIGH | 8 | 0.9% | Jun 3, 2020 | Jenkins Selenium Plugin 3.141.59 and earlier has no CSRF protection for its HTTP endpoints, allowing attackers to perfor... |
| CVE-2020-13764 | HIGH | 7.5 | 1.8% | Jun 2, 2020 | common.php in the Gravity Forms plugin before 2.4.9 for WordPress can leak hashed passwords because user_pass is not con... |
| CVE-2020-12607 | HIGH | 7.5 | 1.3% | Jun 2, 2020 | An issue was discovered in fastecdsa before 2.1.2. When using the NIST P-256 curve in the ECDSA implementation, the poin... |
| CVE-2020-13763 | HIGH | 7.5 | 1.2% | Jun 2, 2020 | In Joomla! before 3.9.19, the default settings of the global textfilter configuration do not block HTML inputs for Guest... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now