2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-6459HIGH8.8Use after free in payments in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially exploit heap...
CVE-2020-6458HIGH8.8Out of bounds read and write in PDFium in Google Chrome prior to 81.0.4044.122 allowed a remote attacker to potentially ...
CVE-2020-13252HIGH8.8Centreon before 19.04.15 allows remote attackers to execute arbitrary OS commands by placing shell metacharacters in RRD...
CVE-2020-12647HIGH8.8Unisys ALGOL Compiler 58.1 before 58.1a.15, 59.1 before 59.1a.9, and 60.0 before 60.0a.5 can emit invalid code sequences...
CVE-2020-5365HIGH7.5Dell EMC Isilon versions 8.2.2 and earlier contain a remotesupport vulnerability. The pre-configured support account, re...
CVE-2020-5364HIGH7.5Dell EMC Isilon OneFS versions 8.2.2 and earlier contain an SNMPv2 vulnerability. The SNMPv2 services is enabled, by def...
CVE-2020-9484HIGH7When using Apache Tomcat versions 10.0.0-M1 to 10.0.0-M4, 9.0.0.M1 to 9.0.34, 8.5.0 to 8.5.54 and 7.0.0 to 7.0.103 if a)...
CVE-2020-13249HIGH8.8libmariadb/mariadb_lib.c in MariaDB Connector/C before 3.1.8 does not properly validate the content of an OK packet rece...
CVE-2020-13241HIGH7.8Microweber 1.1.18 allows Unrestricted File Upload because admin/view:modules/load_module:users#edit-user=1 does not veri...
CVE-2020-13246HIGH7.5An issue was discovered in Gitea through 1.11.5. An attacker can trigger a deadlock by initiating a transfer of a reposi...
CVE-2020-3956HIGH8.8VMware Cloud Director 10.0.x before 10.0.0.2, 9.7.0.x before 9.7.0.5, 9.5.0.x before 9.5.0.6, and 9.1.0.x before 9.1.0.4...
CVE-2020-10725HIGH7.7A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhos...
CVE-2020-9410HIGH8.8The report generator component of TIBCO Software Inc.'s TIBCO JasperReports Library, TIBCO JasperReports Library for Act...
CVE-2020-5579HIGH7.2SQL injection vulnerability in the Paid Memberships versions prior to 2.3.3 allows attacker with administrator rights to...
CVE-2020-12034HIGH8.2Products that use EDS Subsystem: Version 28.0.1 and prior (FactoryTalk Linx software (Previously called RSLinx Enterpris...
CVE-2020-7139HIGH8.1Potential remote access security vulnerabilities have been identified with HPE Nimble Storage systems that could be expl...
CVE-2020-7138HIGH8.8Potential remote code execution security vulnerabilities have been identified with HPE Nimble Storage systems that could...
CVE-2020-13164HIGH7.5In Wireshark 3.2.0 to 3.2.3, 3.0.0 to 3.0.10, and 2.6.0 to 2.6.16, the NFS dissector could crash. This was addressed in ...
CVE-2020-13163HIGH7.4em-imap 0.5 uses the library eventmachine in an insecure way that allows an attacker to perform a man-in-the-middle atta...
CVE-2020-2025HIGH8.8Kata Containers before 1.11.0 on Cloud Hypervisor persists guest filesystem changes to the underlying image file on the ...
CVE-2020-11766HIGH8.8sendfax.php in iFAX AvantFAX before 3.3.6 and HylaFAX Enterprise Web Interface before 0.2.5 allows authenticated Command...
CVE-2020-10995HIGH7.5PowerDNS Recursor from 4.1.0 up to and including 4.3.0 does not sufficiently defend against amplification attacks. An is...
CVE-2020-11807HIGH7.8Because of Unrestricted Upload of a File with a Dangerous Type, Sourcefabric Newscoop 4.4.7 allows an authenticated user...
CVE-2020-10030HIGH8.8An issue has been found in PowerDNS Recursor 4.1.0 up to and including 4.3.0. It allows an attacker (with enough privile...
CVE-2020-1695HIGH7.5A flaw was found in all resteasy 3.x.x versions prior to 3.12.0.Final and all resteasy 4.x.x versions prior to 4.6.0.Fin...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now