2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-4602 | MEDIUM | 4.4 | 0.3% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 stores user credentials in plain in clear text which can be read by a local user. I... |
| CVE-2020-4600 | MEDIUM | 5.3 | 1.3% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed techn... |
| CVE-2020-4599 | MEDIUM | 5.3 | 1.3% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 could allow a remote attacker to obtain sensitive information when a detailed techn... |
| CVE-2020-4597 | MEDIUM | 4.3 | 0.6% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 does not set the secure attribute on authorization tokens or session cookies. Attac... |
| CVE-2020-4596 | HIGH | 7.5 | 0.8% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to ... |
| CVE-2020-4595 | HIGH | 7.5 | 0.8% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to ... |
| CVE-2020-4594 | HIGH | 7.5 | 0.8% | Jan 13, 2021 | IBM Security Guardium Insights 2.0.2 uses weaker than expected cryptographic algorithms that could allow an attacker to ... |
| CVE-2020-26262 | HIGH | 7.2 | 1.3% | Jan 13, 2021 | Coturn is free open source implementation of TURN and STUN Server. Coturn before version 4.5.2 by default does not allow... |
| CVE-2020-23653 | CRITICAL | 9.8 | 4.1% | Jan 13, 2021 | An insecure unserialize vulnerability was discovered in ThinkAdmin versions 4.x through 6.x in app/admin/controller/api/... |
| CVE-2020-35687 | MEDIUM | 4.3 | 1.4% | Jan 13, 2021 | PHPFusion version 9.03.90 is vulnerable to CSRF attack which leads to deletion of all shoutbox messages by the attacker ... |
| CVE-2020-15221 | MEDIUM | 5.4 | 0.6% | Jan 13, 2021 | Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, by modifying target bro... |
| CVE-2020-15220 | MEDIUM | 6.1 | 0.7% | Jan 13, 2021 | Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, two cookies are created... |
| CVE-2020-15219 | MEDIUM | 4.3 | 0.7% | Jan 13, 2021 | Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, when a download error i... |
| CVE-2020-15218 | MEDIUM | 6.8 | 0.8% | Jan 13, 2021 | Combodo iTop is a web based IT Service Management tool. In iTop before versions 2.7.2 and 3.0.0, admin pages are cached,... |
| CVE-2020-5686 | HIGH | 7.5 | 1.2% | Jan 13, 2021 | Incorrect implementation of authentication algorithm issue in UNIVERGE SV9500 series from V1 to V7and SV8500 series from... |
| CVE-2020-5685 | CRITICAL | 9.8 | 1.8% | Jan 13, 2021 | UNIVERGE SV9500 series from V1 to V7and SV8500 series from S6 to S8 allows an attacker to execute arbitrary OS commands ... |
| CVE-2020-5633 | CRITICAL | 9.8 | 3.2% | Jan 13, 2021 | Multiple NEC products (Express5800/T110j, Express5800/T110j-S, Express5800/T110j (2nd-Gen), Express5800/T110j-S (2nd-Gen... |
| CVE-2020-35686 | HIGH | 7.8 | 0.3% | Jan 13, 2021 | The SECOMN service in Sound Research DCHU model software component modules (APO) through 2.0.9.17, delivered on HP Windo... |
| CVE-2020-36191 | MEDIUM | 4.5 | 0.5% | Jan 13, 2021 | JupyterHub 1.1.0 allows CSRF in the admin panel via a request that lacks an _xsrf field, as demonstrated by a /hub/api/u... |
| CVE-2020-28374 | HIGH | 8.1 | 6.6% | Jan 13, 2021 | In drivers/target/target_core_xcopy.c in the Linux kernel before 5.10.7, insufficient identifier checking in the LIO SCS... |
| CVE-2020-16526 | — | — | — | Jan 12, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-28395 | MEDIUM | 5.9 | 1.2% | Jan 12, 2021 | A vulnerability has been identified in SCALANCE X-200RNA switch family (All versions < V3.2.7), SCALANCE X-300 switch fa... |
| CVE-2020-28391 | MEDIUM | 5.9 | 1.1% | Jan 12, 2021 | A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5),... |
| CVE-2020-28390 | MEDIUM | 5.5 | 0.4% | Jan 12, 2021 | A vulnerability has been identified in Opcenter Execution Core (V8.2), Opcenter Execution Core (V8.3). The application c... |
| CVE-2020-28386 | HIGH | 7.8 | 2.6% | Jan 12, 2021 | A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP12), Solid Edge SE2021 (All Versions < ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now