2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-19861 | HIGH | 7.5 | 1.5% | Jan 21, 2022 | When a zone file in ldns 1.7.1 is parsed, the function ldns_nsec3_salt_data is too trusted for the length value obtained... |
| CVE-2020-19858 | HIGH | 7.5 | 1.7% | Jan 21, 2022 | Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sendin... |
| CVE-2020-23315 | HIGH | 7.5 | 2.4% | Jan 20, 2022 | There is an ASSERTION (pFuncBody->GetYieldRegister() == oldYieldRegister) failed in Js::DebugContext::RundownSourcesAndR... |
| CVE-2020-14110 | HIGH | 7.8 | 0.2% | Jan 18, 2022 | AX3600 router sensitive information leaked.There is an unauthorized interface through luci to obtain sensitive informati... |
| CVE-2020-14107 | HIGH | 7.5 | 1.0% | Jan 18, 2022 | A stack overflow in the HTTP server of Cast can be exploited to make the app crash in LAN. |
| CVE-2020-28679 | HIGH | 8.8 | 2.5% | Jan 10, 2022 | A vulnerability in the showReports module of Zoho ManageEngine Applications Manager before build 14550 allows authentica... |
| CVE-2020-9058 | HIGH | 8.1 | 0.3% | Jan 10, 2022 | Z-Wave devices based on Silicon Labs 500 series chipsets using CRC-16 encapsulation, including but likely not limited to... |
| CVE-2020-9057 | HIGH | 8.8 | 0.4% | Jan 10, 2022 | Z-Wave devices based on Silicon Labs 100, 200, and 300 series chipsets do not support encryption, allowing an attacker w... |
| CVE-2020-29050 | HIGH | 7.5 | 2.2% | Jan 10, 2022 | SphinxSearch in Sphinx Technologies Sphinx through 3.1.1 allows directory traversal (in conjunction with CVE-2019-14511)... |
| CVE-2020-5956 | HIGH | 7.5 | 0.8% | Jan 5, 2022 | An issue was discovered in SdLegacySmm in Insyde InsydeH2O with kernel 5.1 before 05.15.11, 5.2 before 05.25.11, 5.3 bef... |
| CVE-2020-23026 | HIGH | 7.5 | 1.0% | Jan 3, 2022 | A NULL pointer dereference in the main() function dhry_1.c of dhrystone 2.1 causes a denial of service (DoS). |
| CVE-2020-11263 | HIGH | 8.2 | 0.2% | Jan 3, 2022 | An integer overflow due to improper check performed after the address and size passed are aligned in Snapdragon Compute,... |
| CVE-2020-22061 | HIGH | 7.8 | 0.3% | Dec 28, 2021 | SUPERAntispyware v8.0.0.1050 was discovered to contain an issue in the component saskutil64.sys. This issue allows attac... |
| CVE-2020-21236 | HIGH | 8.8 | 0.5% | Dec 27, 2021 | A vulnerability in /damicms-master/admin.php?s=/Article/doedit of DamiCMS v6.0 allows attackers to compromise and impers... |
| CVE-2020-20948 | HIGH | 7.5 | 1.3% | Dec 27, 2021 | An arbitrary file download vulnerability in jeecg v3.8 allows attackers to access sensitive files via modification of th... |
| CVE-2020-20945 | HIGH | 8.8 | 0.6% | Dec 27, 2021 | A Cross-Site Request Forgery (CSRF) in /admin/index.php?lfj=member&action=editmember of Qibosoft v7 allows attackers to ... |
| CVE-2020-36511 | HIGH | 7.5 | 1.1% | Dec 27, 2021 | An issue was discovered in the bite crate through 2020-12-31 for Rust. read::BiteReadExpandedExt::read_framed_max may re... |
| CVE-2020-3886 | HIGH | 7.8 | 1.0% | Dec 23, 2021 | A use after free issue was addressed with improved memory management. This issue is fixed in macOS Catalina 10.15.4, Sec... |
| CVE-2020-20593 | HIGH | 8 | 0.4% | Dec 22, 2021 | A cross-site request forgery (CSRF) in Rockoa v1.9.8 allows an authenticated attacker to arbitrarily add an administrato... |
| CVE-2020-19316 | HIGH | 8.8 | 2.5% | Dec 20, 2021 | OS Command injection vulnerability in function link in Filesystem.php in Laravel Framework before 5.8.17. |
| CVE-2020-8105 | HIGH | 7.8 | 1.0% | Dec 20, 2021 | OS Command Injection vulnerability in the wirelessConnect handler of Abode iota All-In-One Security Kit allows an attack... |
| CVE-2020-8968 | HIGH | 7.1 | 0.3% | Dec 17, 2021 | Parallels Remote Application Server (RAS) allows a local attacker to retrieve certain profile password in clear text for... |
| CVE-2020-18081 | HIGH | 7.5 | 1.1% | Dec 17, 2021 | The checkuser function of SEMCMS 3.8 was discovered to contain a vulnerability which allows attackers to obtain the pass... |
| CVE-2020-18077 | HIGH | 7.5 | 1.2% | Dec 17, 2021 | A buffer overflow vulnerability in the Virtual Path Mapping component of FTPShell v6.83 allows attackers to cause a deni... |
| CVE-2020-35214 | HIGH | 8.1 | 0.8% | Dec 16, 2021 | An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operati... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now