2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-11050HIGH8.1In Java-WebSocket less than or equal to 1.4.1, there is an Improper Validation of Certificate with Host Mismatch where W...
CVE-2020-10795HIGH7.2Gira TKS-IP-Gateway 4.0.7.7 is vulnerable to authenticated remote code execution via the backup functionality of the web...
CVE-2020-12116HIGH7.5Zoho ManageEngine OpManager Stable build before 124196 and Released build before 125125 allows an unauthenticated attack...
CVE-2020-7803HIGH8.8IMGTech Co,Ltd ZInsX.ocx ActiveX Control in Zoneplayer 2.0.1.3, version 2.0.1.4 and prior versions on Windows. File Donw...
CVE-2020-10974HIGH7.5An issue was discovered affecting a backup feature where a crafted POST request returns the current configuration of the...
CVE-2020-10973HIGH7.5An issue was discovered in Wavlink WN530HG4, Wavlink WN531G3, Wavlink WN533A8, and Wavlink WN551K1 affecting /cgi-bin/Ex...
CVE-2020-10972HIGH7.5An issue was discovered where a page is exposed that has the current administrator password in cleartext in the source c...
CVE-2020-10971HIGH8.8An issue was discovered on Wavlink Jetstream devices where a crafted POST request can be sent to adm.cgi that will resul...
CVE-2020-5745HIGH7.4Cross-site request forgery in TCExam 14.2.2 allows a remote attacker to perform sensitive application actions by trickin...
CVE-2020-12608HIGH7.8An issue was discovered in SolarWinds MSP PME (Patch Management Engine) Cache Service before 1.1.15 in the Advanced Moni...
CVE-2020-6652HIGH7.8Incorrect Privilege Assignment vulnerability in Eaton's Intelligent Power Manager (IPM) v1.67 & prior allow non-admin us...
CVE-2020-6651HIGH7.3Improper Input Validation in Eaton's Intelligent Power Manager (IPM) v 1.67 & prior on file name during configuration fi...
CVE-2020-8983HIGH7.5An arbitrary file write issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, in...
CVE-2020-8982HIGH7.5An unauthenticated arbitrary file read issue exists in all versions of Citrix ShareFile StorageZones (aka storage zones)...
CVE-2020-7473HIGH7.5In certain situations, all versions of Citrix ShareFile StorageZones (aka storage zones) Controller, including the most ...
CVE-2020-6081HIGH8.8An exploitable code execution vulnerability exists in the PLC_Task functionality of 3S-Smart Software Solutions GmbH COD...
CVE-2020-5895HIGH7.8On NGINX Controller versions 3.1.0-3.3.0, AVRD uses world-readable and world-writable permissions on its socket, which a...
CVE-2020-5894HIGH8.1On versions 3.0.0-3.3.0, the NGINX Controller webserver does not invalidate the server-side session token after users lo...
CVE-2020-12691HIGH8.8An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any authenticated user can create an EC2 creden...
CVE-2020-12690HIGH8.8An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. The list of roles provided for an OAuth1 access...
CVE-2020-12689HIGH8.8An issue was discovered in OpenStack Keystone before 15.0.1, and 16.0.0. Any user authenticated within a limited scope (...
CVE-2020-12669HIGH8.8core/get_menudiv.php in Dolibarr before 11.0.4 allows remote authenticated attackers to bypass intended access restricti...
CVE-2020-3334HIGH7.4A vulnerability in the ARP packet processing of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thr...
CVE-2020-3312HIGH7.5A vulnerability in the application policy configuration of Cisco Firepower Threat Defense (FTD) Software could allow an ...
CVE-2020-3309HIGH7.2A vulnerability in Cisco Firepower Device Manager (FDM) On-Box software could allow an authenticated, remote attacker to...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now