2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-8476HIGH7.5For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8475HIGH7.5For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8471HIGH7.8For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8473HIGH7.8Insufficient folder permissions used by system functions in ABB System 800xA Base (version 6.1 and earlier) allow low pr...
CVE-2020-8472HIGH7.8Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0...
CVE-2020-12103HIGH7.7In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticate...
CVE-2020-12102HIGH7.7In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionalit...
CVE-2020-10663HIGH7.5The JSON gem through 2.2.0 for Ruby, as used in Ruby 2.4 through 2.4.9, 2.5 through 2.5.7, and 2.6 through 2.6.5, has an...
CVE-2020-11014HIGH8.6Electron-Cash-SLP before version 3.6.2 has a vulnerability. All token creators that use the "Mint Tool" feature of the E...
CVE-2020-7644HIGH8.1fun-map through 3.3.1 is vulnerable to Prototype Pollution. The function assocInM could be tricked into adding or modify...
CVE-2020-12243HIGH7.5In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial...
CVE-2020-10641HIGH7.5An unprotected logging route may allow an attacker to write endless log statements into the database without space limit...
CVE-2020-12078HIGH8.8An issue was discovered in Open-AudIT 3.3.1. There is shell metacharacter injection via attributes to an open-audit/conf...
CVE-2020-5567HIGH7.5Improper authentication vulnerability in Cybozu Garoon 4.0.0 to 4.10.3 allows remote attackers to obtain data in Applica...
CVE-2020-9481HIGH7.5Apache ATS 6.0.0 to 6.2.3, 7.0.0 to 7.1.9, and 8.0.0 to 8.0.6 is vulnerable to a HTTP/2 slow read attack.
CVE-2020-7067HIGH7.5In PHP versions 7.2.x below 7.2.30, 7.3.x below 7.3.17 and 7.4.x below 7.4.5, if PHP is compiled with EBCDIC support (un...
CVE-2020-1762HIGH8.6An insufficient JWT validation vulnerability was found in Kiali versions 0.4.0 to 1.15.0 and was fixed in Kiali version ...
CVE-2020-11941HIGH8.8An issue was discovered in Open-AudIT 3.2.2. There is OS Command injection in Discovery.
CVE-2020-7135HIGH7.8A potential security vulnerability has been identified in the disk drive firmware installers named Supplemental Update /...
CVE-2020-1806HIGH7.1Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities....
CVE-2020-1805HIGH7.1Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities....
CVE-2020-1804HIGH7.1Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities....
CVE-2020-12266HIGH7.5An issue was discovered where there are multiple externally accessible pages that do not require any sort of authenticat...
CVE-2020-12242HIGH7.8Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in ...
CVE-2020-12138HIGH8.8AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of se...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now