2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9098 | HIGH | 7.5 | 0.8% | Apr 30, 2020 | Huawei OceanStor 5310 product with version of V500R007C60SPC100 has an invalid pointer access vulnerability. The softwar... |
| CVE-2020-5888 | HIGH | 8.1 | 0.6% | Apr 30, 2020 | On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, BIG-IP Virtual Edition (VE) may expose a mechanism fo... |
| CVE-2020-1817 | HIGH | 7.8 | 0.2% | Apr 30, 2020 | Huawei PCManager with versions earlier than 10.0.1.36 has a privilege escalation vulnerability. Due to improper permissi... |
| CVE-2020-5891 | HIGH | 7.5 | 1.2% | Apr 30, 2020 | On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, undisclosed HTTP/2 requests can lead to a denial of ser... |
| CVE-2020-5883 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, when a virtual server is configured with H... |
| CVE-2020-5882 | HIGH | 7.5 | 1.0% | Apr 30, 2020 | On BIG-IP 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5, and 11.6.1-11.6.5.1, under certain condition... |
| CVE-2020-5881 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, and 13.1.0-13.1.3.3, when the BIG-IP Virtual Edition (VE) is configured wi... |
| CVE-2020-5880 | HIGH | 7.1 | 1.3% | Apr 30, 2020 | Om BIG-IP 15.0.0-15.0.1.3 and 14.1.0-14.1.2.3, the restjavad process may expose a way for attackers to upload arbitrary ... |
| CVE-2020-5879 | HIGH | 7.5 | 0.8% | Apr 30, 2020 | On BIG-IP ASM 11.6.1-11.6.5.1, under certain configurations, the BIG-IP system sends data plane traffic to back-end serv... |
| CVE-2020-5878 | HIGH | 7.5 | 1.0% | Apr 30, 2020 | On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.3, Traffic Management Microkernel (TMM) may restart on B... |
| CVE-2020-5877 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On BIG-IP 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, malformed input to th... |
| CVE-2020-5876 | HIGH | 8.1 | 0.6% | Apr 30, 2020 | On BIG-IP 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, a race condition exis... |
| CVE-2020-5875 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On BIG-IP 15.0.0-15.0.1 and 14.1.0-14.1.2.3, under certain conditions, the Traffic Management Microkernel (TMM) may gene... |
| CVE-2020-5874 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On BIG-IP APM 15.0.0-15.0.1.2, 14.1.0-14.1.2.3, and 14.0.0-14.0.1, in certain circumstances, an attacker sending specifi... |
| CVE-2020-5873 | HIGH | 7.2 | 1.4% | Apr 30, 2020 | On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.6.1-11.6.5 and BIG-IQ 5.2.0-7.1.0, a us... |
| CVE-2020-5872 | HIGH | 7.5 | 1.3% | Apr 30, 2020 | On BIG-IP 14.1.0-14.1.2.3, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.4.1, when processing TLS traffic with hardwar... |
| CVE-2020-5871 | HIGH | 7.5 | 1.0% | Apr 30, 2020 | On BIG-IP 14.1.0-14.1.2.3, undisclosed requests can lead to a denial of service (DoS) when sent to BIG-IP HTTP/2 virtual... |
| CVE-2020-1752 | HIGH | 7 | 0.5% | Apr 30, 2020 | A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was ca... |
| CVE-2020-12050 | HIGH | 7 | 0.3% | Apr 30, 2020 | SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privile... |
| CVE-2020-6010 | HIGH | 8.8 | 49.2% | Apr 30, 2020 | LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection |
| CVE-2020-12479 | HIGH | 8.8 | 2.6% | Apr 29, 2020 | TeamPass 2.1.27.36 allows any authenticated TeamPass user to trigger a PHP file include vulnerability via a crafted HTTP... |
| CVE-2020-12478 | HIGH | 7.5 | 7.2% | Apr 29, 2020 | TeamPass 2.1.27.36 allows an unauthenticated attacker to retrieve files from the TeamPass web root. This may include bac... |
| CVE-2020-12477 | HIGH | 7.5 | 1.8% | Apr 29, 2020 | The REST API functions in TeamPass 2.1.27.36 allow any user with a valid API token to bypass IP address whitelist restri... |
| CVE-2020-11943 | HIGH | 8.8 | 23.9% | Apr 29, 2020 | An issue was discovered in Open-AudIT 3.2.2. There is Arbitrary file upload. |
| CVE-2020-12470 | HIGH | 7.2 | 1.7% | Apr 29, 2020 | MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now