2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26732 | HIGH | 7.5 | 1.5% | Jan 14, 2021 | SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie ... |
| CVE-2020-28470 | MEDIUM | 6.1 | 0.8% | Jan 14, 2021 | This affects the package @scullyio/scully before 1.0.9. The transfer state is serialised with the JSON.stringify() funct... |
| CVE-2020-16119 | HIGH | 7.8 | 0.4% | Jan 14, 2021 | Use-after-free vulnerability in the Linux kernel exploitable by a local attacker due to reuse of a DCCP socket with an a... |
| CVE-2020-27267 | CRITICAL | 9.1 | 4.9% | Jan 14, 2021 | KEPServerEX v6.0 to v6.9, ThingWorx Kepware Server v6.8 and v6.9, ThingWorx Industrial Connectivity (all versions), OPC-... |
| CVE-2020-27265 | CRITICAL | 9.8 | 10.1% | Jan 14, 2021 | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC... |
| CVE-2020-27263 | CRITICAL | 9.1 | 4.9% | Jan 14, 2021 | KEPServerEX: v6.0 to v6.9, ThingWorx Kepware Server: v6.8 and v6.9, ThingWorx Industrial Connectivity: All versions, OPC... |
| CVE-2020-9209 | MEDIUM | 6.7 | 0.2% | Jan 13, 2021 | There is a privilege escalation vulnerability in SMC2.0 product. Some files in a directory of a module are located impro... |
| CVE-2020-1866 | MEDIUM | 6.5 | 0.4% | Jan 13, 2021 | There is an out-of-bounds read vulnerability in several products. The software reads data past the end of the intended b... |
| CVE-2020-1865 | MEDIUM | 6.5 | 0.3% | Jan 13, 2021 | There is an out-of-bounds read vulnerability in Huawei CloudEngine products. The software reads data past the end of the... |
| CVE-2020-14102 | HIGH | 7.2 | 1.9% | Jan 13, 2021 | There is command injection when ddns processes the hostname, which causes the administrator user to obtain the root priv... |
| CVE-2020-14101 | HIGH | 7.5 | 1.1% | Jan 13, 2021 | The data collection SDK of the router web management interface caused the leakage of the token. This affects Xiaomi rout... |
| CVE-2020-14098 | HIGH | 7.5 | 1.2% | Jan 13, 2021 | The login verification can be bypassed by using the problem that the time is not synchronized after the router restarts.... |
| CVE-2020-14097 | HIGH | 7.5 | 0.9% | Jan 13, 2021 | Wrong nginx configuration, causing specific paths to be downloaded without authorization. This affects Xiaomi router AX6... |
| CVE-2020-9203 | LOW | 3.3 | 0.2% | Jan 13, 2021 | There is a resource management errors vulnerability in Huawei P30. Local attackers construct broadcast message for some ... |
| CVE-2020-9143 | MEDIUM | 5.3 | 0.7% | Jan 13, 2021 | There is a missing authentication vulnerability in some Huawei smartphone.Successful exploitation of this vulnerability ... |
| CVE-2020-9142 | CRITICAL | 9.1 | 0.7% | Jan 13, 2021 | There is a heap base buffer overflow vulnerability in some Huawei smartphone.Successful exploitation of this vulnerabili... |
| CVE-2020-9141 | CRITICAL | 9.1 | 0.4% | Jan 13, 2021 | There is a improper privilege management vulnerability in some Huawei smartphone. Successful exploitation of this vulner... |
| CVE-2020-9140 | CRITICAL | 9.8 | 1.3% | Jan 13, 2021 | There is a vulnerability with buffer access with incorrect length value in some Huawei Smartphone.Unauthorized users may... |
| CVE-2020-9139 | CRITICAL | 9.1 | 0.8% | Jan 13, 2021 | There is a improper input validation vulnerability in some Huawei Smartphone.Successful exploit of this vulnerability ca... |
| CVE-2020-9138 | MEDIUM | 5.3 | 0.7% | Jan 13, 2021 | There is a heap-based buffer overflow vulnerability in some Huawei Smartphone, Successful exploit of this vulnerability ... |
| CVE-2020-35578 | HIGH | 7.2 | 81.9% | Jan 13, 2021 | An issue was discovered in the Manage Plugins page in Nagios XI before 5.8.0. Because the line-ending conversion feature... |
| CVE-2020-9145 | CRITICAL | 9.1 | 0.8% | Jan 13, 2021 | There is an Out-of-bounds Write vulnerability in some Huawei smartphone. Successful exploitation of this vulnerability m... |
| CVE-2020-27488 | CRITICAL | 9.8 | 2.0% | Jan 13, 2021 | Loxone Miniserver devices with firmware before 11.1 (aka 11.1.9.3) are unable to use an authentication method that is ba... |
| CVE-2020-9144 | CRITICAL | 9.8 | 0.8% | Jan 13, 2021 | There is a heap overflow vulnerability in some Huawei smartphone, attackers can exploit this vulnerability to cause heap... |
| CVE-2020-4604 | MEDIUM | 4.4 | 0.2% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 stores user credentials in plain in clear text which can be read by a local privile... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now