2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-8476 | HIGH | 7.5 | 1.5% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8475 | HIGH | 7.5 | 1.1% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8471 | HIGH | 7.8 | 0.4% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8473 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient folder permissions used by system functions in ABB System 800xA Base (version 6.1 and earlier) allow low pr... |
| CVE-2020-8472 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0... |
| CVE-2020-12103 | HIGH | 7.7 | 1.5% | Apr 28, 2020 | In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticate... |
| CVE-2020-12102 | HIGH | 7.7 | 1.8% | Apr 28, 2020 | In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionalit... |
| CVE-2020-10663 | HIGH | 7.5 | 6.8% | Apr 28, 2020 | The JSON gem through 2.2.0 for Ruby, as used in Ruby 2.4 through 2.4.9, 2.5 through 2.5.7, and 2.6 through 2.6.5, has an... |
| CVE-2020-11014 | HIGH | 8.6 | 1.6% | Apr 28, 2020 | Electron-Cash-SLP before version 3.6.2 has a vulnerability. All token creators that use the "Mint Tool" feature of the E... |
| CVE-2020-7644 | HIGH | 8.1 | 1.2% | Apr 28, 2020 | fun-map through 3.3.1 is vulnerable to Prototype Pollution. The function assocInM could be tricked into adding or modify... |
| CVE-2020-12243 | HIGH | 7.5 | 4.4% | Apr 28, 2020 | In filter.c in slapd in OpenLDAP before 2.4.50, LDAP search filters with nested boolean expressions can result in denial... |
| CVE-2020-10641 | HIGH | 7.5 | 1.3% | Apr 28, 2020 | An unprotected logging route may allow an attacker to write endless log statements into the database without space limit... |
| CVE-2020-12078 | HIGH | 8.8 | 10.0% | Apr 28, 2020 | An issue was discovered in Open-AudIT 3.3.1. There is shell metacharacter injection via attributes to an open-audit/conf... |
| CVE-2020-5567 | HIGH | 7.5 | 1.4% | Apr 28, 2020 | Improper authentication vulnerability in Cybozu Garoon 4.0.0 to 4.10.3 allows remote attackers to obtain data in Applica... |
| CVE-2020-9481 | HIGH | 7.5 | 2.4% | Apr 27, 2020 | Apache ATS 6.0.0 to 6.2.3, 7.0.0 to 7.1.9, and 8.0.0 to 8.0.6 is vulnerable to a HTTP/2 slow read attack. |
| CVE-2020-7067 | HIGH | 7.5 | 4.3% | Apr 27, 2020 | In PHP versions 7.2.x below 7.2.30, 7.3.x below 7.3.17 and 7.4.x below 7.4.5, if PHP is compiled with EBCDIC support (un... |
| CVE-2020-1762 | HIGH | 8.6 | 1.1% | Apr 27, 2020 | An insufficient JWT validation vulnerability was found in Kiali versions 0.4.0 to 1.15.0 and was fixed in Kiali version ... |
| CVE-2020-11941 | HIGH | 8.8 | 4.6% | Apr 27, 2020 | An issue was discovered in Open-AudIT 3.2.2. There is OS Command injection in Discovery. |
| CVE-2020-7135 | HIGH | 7.8 | 0.5% | Apr 27, 2020 | A potential security vulnerability has been identified in the disk drive firmware installers named Supplemental Update /... |
| CVE-2020-1806 | HIGH | 7.1 | 0.6% | Apr 27, 2020 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities.... |
| CVE-2020-1805 | HIGH | 7.1 | 0.6% | Apr 27, 2020 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities.... |
| CVE-2020-1804 | HIGH | 7.1 | 0.6% | Apr 27, 2020 | Huawei Honor V10 smartphones with versions earlier than 10.0.0.156(C00E156R2P4) has three out of bounds vulnerabilities.... |
| CVE-2020-12266 | HIGH | 7.5 | 1.7% | Apr 27, 2020 | An issue was discovered where there are multiple externally accessible pages that do not require any sort of authenticat... |
| CVE-2020-12242 | HIGH | 7.8 | 1.1% | Apr 27, 2020 | Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in ... |
| CVE-2020-12138 | HIGH | 8.8 | 3.3% | Apr 27, 2020 | AMD ATI atillk64.sys 5.11.9.0 allows low-privileged users to interact directly with physical memory by calling one of se... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now