2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-3252MEDIUM6.5Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r...
CVE-2020-11660MEDIUM6.5CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to view restricte...
CVE-2020-11659MEDIUM4.3CA API Developer Portal 4.3.1 and earlier contains an access control flaw that allows privileged users to perform a rest...
CVE-2020-11665MEDIUM6.1CA API Developer Portal 4.3.1 and earlier handles loginRedirect page redirects in an insecure manner, which allows attac...
CVE-2020-11664MEDIUM6.1CA API Developer Portal 4.3.1 and earlier handles homeRedirect page redirects in an insecure manner, which allows attack...
CVE-2020-11663MEDIUM6.1CA API Developer Portal 4.3.1 and earlier handles 404 requests in an insecure manner, which allows attackers to perform ...
CVE-2020-10951MEDIUM4.7Western Digital My Cloud Home and ibi devices before 2.2.0 allow clickjacking on sign-in pages.
CVE-2020-5346MEDIUM4.8RSA Authentication Manager versions prior to 8.4 P11 contain a stored cross-site scripting vulnerability in the Security...
CVE-2020-3954MEDIUM6.1Open Redirect vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input validation.
CVE-2020-3953MEDIUM4.8Cross Site Scripting (XSS) vulnerability exists in VMware vRealize Log Insight prior to 8.1.0 due to improper Input vali...
CVE-2020-11791MEDIUM6.1NETGEAR JGS516PE devices before 2.6.0.43 are affected by reflected XSS.
CVE-2020-11787MEDIUM4.8Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 b...
CVE-2020-6992MEDIUM6.7A local privilege escalation vulnerability has been identified in the GE Digital CIMPLICITY HMI/SCADA product v10.0 and ...
CVE-2020-11786MEDIUM4.8Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 b...
CVE-2020-11785MEDIUM4.8Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 b...
CVE-2020-11784MEDIUM4.8Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 b...
CVE-2020-10637MEDIUM5.5Eaton HMiSoft VU3 (HMIVU3 runtime not impacted), Version 3.00.23 and prior, however, the HMIVU runtimes are not impacted...
CVE-2020-0576MEDIUM6.5Buffer overflow in Intel(R) Modular Server MFS2600KISPP Compute Module may allow an unauthenticated user to potentially ...
CVE-2020-0568MEDIUM4.7Race condition in the Intel(R) Driver and Support Assistant before version 20.1.5 may allow an authenticated user to pot...
CVE-2020-0558MEDIUM6.5Improper buffer restrictions in kernel mode driver for Intel(R) PROSet/Wireless WiFi products before version 21.70 on Wi...
CVE-2020-4294MEDIUM6.3IBM QRadar 7.3.0 to 7.3.3 Patch 2 is vulnerable to Server Side Request Forgery (SSRF). This may allow an authenticated a...
CVE-2020-4274MEDIUM5.4IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow an authenticated user to access data and perform unauthorized actions due ...
CVE-2020-4271MEDIUM6.3IBM QRadar 7.3.0 to 7.3.3 Patch 2 could allow an authenticated user to send a specially crafted command which would be e...
CVE-2020-4268MEDIUM5.4IBM QRadar 7.3.0 to 7.3.3 Patch 2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitr...
CVE-2020-11783MEDIUM4.8Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7500v2 before 1.0.3.46, R7800 b...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now