2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-12468HIGH7.8Subrion CMS 4.2.1 allows CSV injection via a phrase value within a language. This is related to phrases/add/ and languag...
CVE-2020-11024HIGH8.2In Moonlight iOS/tvOS before 4.0.1, the pairing process is vulnerable to a man-in-the-middle attack. The bug has been fi...
CVE-2020-12473HIGH7.2MonoX through 5.1.40.5152 allows admins to execute arbitrary programs by reconfiguring the Converter Executable setting ...
CVE-2020-11021HIGH7.5Actions Http-Client (NPM @actions/http-client) before version 1.0.8 can disclose Authorization headers to incorrect doma...
CVE-2020-12461HIGH8.8PHP-Fusion 9.03.50 allows SQL Injection because maincore.php has an insufficient protection mechanism. An attacker can d...
CVE-2020-8775HIGH8.9Pega Platform before version 8.2.6 is affected by a Stored Cross-Site Scripting (XSS) vulnerability in the comment tags.
CVE-2020-8774HIGH8.8Pega Platform before version 8.2.6 is affected by a Reflected Cross-Site Scripting vulnerability in the "ActionStringID"...
CVE-2020-8773HIGH8.9The Richtext Editor in Pega Platform before 8.2.6 is affected by a Stored Cross-Site Scripting (XSS) vulnerability.
CVE-2020-7804HIGH7.2ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary ...
CVE-2020-2575HIGH7.5Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that ar...
CVE-2020-12446HIGH7.8The ene.sys driver in G.SKILL Trident Z Lighting Control through 1.00.08 exposes mapping and un-mapping of physical memo...
CVE-2020-11677HIGH8.8Cerner medico 26.00 has a Local Buffer Overflow (issue 3 of 3).
CVE-2020-11676HIGH8.8Cerner medico 26.00 has a Local Buffer Overflow (issue 2 of 3).
CVE-2020-11675HIGH8.8Cerner medico 26.00 has a Local Buffer Overflow (issue 1 of 3).
CVE-2020-11674HIGH8.8Cerner medico 26.00 allows variable reuse, possibly causing data corruption.
CVE-2020-11446HIGH7.8ESET Antivirus and Antispyware Module module 1553 through 1560 allows a user with limited access rights to create hard l...
CVE-2020-12246HIGH8.8Beeline Smart Box 2.0.38 routers allow "Advanced settings > Other > Diagnostics" OS command injection via the Ping ping_...
CVE-2020-11884HIGH7In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as de...
CVE-2020-12447HIGH7.5A Local File Inclusion (LFI) issue on Onkyo TX-NR585 1000-0000-000-0008-0000 devices allows remote unauthenticated users...
CVE-2020-8489HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all pub...
CVE-2020-8488HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all published...
CVE-2020-8487HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Base (all published versions) e...
CVE-2020-8486HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA RNRP (all published versions) e...
CVE-2020-8485HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA for MOD 300 (all published vers...
CVE-2020-8484HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA for DCI (all published versions...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now