2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-19861HIGH7.5When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained...
CVE-2020-19858HIGH7.5Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sendin...
CVE-2020-23315HIGH7.5There is an ASSERTION (pFuncBody->GetYieldRegister() == oldYieldRegister) failed in Js::DebugContext::RundownSourcesAndR...
CVE-2020-14110HIGH7.8AX3600 router sensitive information leaked.There is an unauthorized interface through luci to obtain sensitive informati...
CVE-2020-14107HIGH7.5A stack overflow in the HTTP server of Cast can be exploited to make the app crash in LAN.
CVE-2020-28679HIGH8.8A vulnerability in the showReports module of Zoho ManageEngine Applications Manager before build 14550 allows authentica...
CVE-2020-9058HIGH8.1Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to...
CVE-2020-9057HIGH8.8Z-Wave devices based on Silicon Labs 100, 200, and 300 series chipsets do not support encryption, allowing an attacker w...
CVE-2020-29050HIGH7.5SphinxSearch in Sphinx Technologies Sphinx through 3.1.1 allows directory traversal (in conjunction with CVE-2019-14511)...
CVE-2020-5956HIGH7.5An issue was discovered in SdLegacySmm in Insyde InsydeH2O with kernel 5.1 before 05.15.11, 5.2 before 05.25.11, 5.3 bef...
CVE-2020-23026HIGH7.5A NULL pointer dereference in the main() function dhry_1.c of dhrystone 2.1 causes a denial of service (DoS).
CVE-2020-11263HIGH8.2An integer overflow due to improper check performed after the address and size passed are aligned in Snapdragon Compute,...
CVE-2020-22061HIGH7.8SUPERAntispyware v8.0.0.1050 was discovered to contain an issue in the component saskutil64.sys. This issue allows attac...
CVE-2020-21236HIGH8.8A vulnerability in /damicms-master/admin.php?s=/Article/doedit of DamiCMS v6.0 allows attackers to compromise and impers...
CVE-2020-20948HIGH7.5An arbitrary file download vulnerability in jeecg v3.8 allows attackers to access sensitive files via modification of th...
CVE-2020-20945HIGH8.8A Cross-Site Request Forgery (CSRF) in /admin/index.php?lfj=member&action=editmember of Qibosoft v7 allows attackers to ...
CVE-2020-36511HIGH7.5An issue was discovered in the bite crate through 2020-12-31 for Rust. read::BiteReadExpandedExt::read_framed_max may re...
CVE-2020-3886HIGH7.8A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Sec...
CVE-2020-20593HIGH8A cross-site request forgery (CSRF) in Rockoa v1.9.8 allows an authenticated attacker to arbitrarily add an administrato...
CVE-2020-19316HIGH8.8OS Command injection vulnerability in function link in Filesystem.php in Laravel Framework before 5.8.17.
CVE-2020-8105HIGH7.8OS Command Injection vulnerability in the wirelessConnect handler of Abode iota All-In-One Security Kit allows an attack...
CVE-2020-8968HIGH7.1Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text for...
CVE-2020-18081HIGH7.5The checkuser function of SEMCMS 3.8 was discovered to contain a vulnerability which allows attackers to obtain the pass...
CVE-2020-18077HIGH7.5A buffer overflow vulnerability in the Virtual Path Mapping component of FTPShell v6.83 allows attackers to cause a deni...
CVE-2020-35214HIGH8.1An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operati...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now