2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9098HIGH7.5Huawei OceanStor 5310 product with version of V500R007C60SPC100 has an invalid pointer access vulnerability. The softwar...
CVE-2020-5888HIGH8.1On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, BIG-IP Virtual Edition (VE) may expose a mechanism fo...
CVE-2020-1817HIGH7.8Huawei PCManager with versions earlier than 10.0.1.36 has a privilege escalation vulnerability. Due to improper permissi...
CVE-2020-5891HIGH7.5On BIG-IP 15.1.0-15.1.0.1, 15.0.0-15.0.1.2, and 14.1.0-14.1.2.3, undisclosed HTTP/2 requests can lead to a denial of ser...
CVE-2020-5883HIGH7.5On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 14.0.0-14.0.1, and 13.1.0-13.1.3.1, when a virtual server is configured with H...
CVE-2020-5882HIGH7.5On BIG-IP 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5, and 11.6.1-11.6.5.1, under certain condition...
CVE-2020-5881HIGH7.5On versions 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, and 13.1.0-13.1.3.3, when the BIG-IP Virtual Edition (VE) is configured wi...
CVE-2020-5880HIGH7.1Om BIG-IP 15.0.0-15.0.1.3 and 14.1.0-14.1.2.3, the restjavad process may expose a way for attackers to upload arbitrary ...
CVE-2020-5879HIGH7.5On BIG-IP ASM 11.6.1-11.6.5.1, under certain configurations, the BIG-IP system sends data plane traffic to back-end serv...
CVE-2020-5878HIGH7.5On versions 15.1.0-15.1.0.1, 15.0.0-15.0.1.1, and 14.1.0-14.1.2.3, Traffic Management Microkernel (TMM) may restart on B...
CVE-2020-5877HIGH7.5On BIG-IP 15.0.0-15.1.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, malformed input to th...
CVE-2020-5876HIGH8.1On BIG-IP 15.0.0-15.0.1.3, 14.1.0-14.1.2.3, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, a race condition exis...
CVE-2020-5875HIGH7.5On BIG-IP 15.0.0-15.0.1 and 14.1.0-14.1.2.3, under certain conditions, the Traffic Management Microkernel (TMM) may gene...
CVE-2020-5874HIGH7.5On BIG-IP APM 15.0.0-15.0.1.2, 14.1.0-14.1.2.3, and 14.0.0-14.0.1, in certain circumstances, an attacker sending specifi...
CVE-2020-5873HIGH7.2On BIG-IP 15.0.0-15.0.1, 14.1.0-14.1.2.3, 13.1.0-13.1.3.1, 12.1.0-12.1.5, and 11.6.1-11.6.5 and BIG-IQ 5.2.0-7.1.0, a us...
CVE-2020-5872HIGH7.5On BIG-IP 14.1.0-14.1.2.3, 14.0.0-14.0.1, 13.1.0-13.1.3.1, and 12.1.0-12.1.4.1, when processing TLS traffic with hardwar...
CVE-2020-5871HIGH7.5On BIG-IP 14.1.0-14.1.2.3, undisclosed requests can lead to a denial of service (DoS) when sent to BIG-IP HTTP/2 virtual...
CVE-2020-1752HIGH7A use-after-free vulnerability introduced in glibc upstream version 2.14 was found in the way the tilde expansion was ca...
CVE-2020-12050HIGH7SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privile...
CVE-2020-6010HIGH8.8LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection
CVE-2020-12479HIGH8.8TeamPass 2.1.27.36 allows any authenticated TeamPass user to trigger a PHP file include vulnerability via a crafted HTTP...
CVE-2020-12478HIGH7.5TeamPass 2.1.27.36 allows an unauthenticated attacker to retrieve files from the TeamPass web root. This may include bac...
CVE-2020-12477HIGH7.5The REST API functions in TeamPass 2.1.27.36 allow any user with a valid API token to bypass IP address whitelist restri...
CVE-2020-11943HIGH8.8An issue was discovered in Open-AudIT 3.2.2. There is Arbitrary file upload.
CVE-2020-12470HIGH7.2MonoX through 5.1.40.5152 allows administrators to execute arbitrary code by modifying an ASPX template.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now