2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6231 | MEDIUM | 5.4 | 0.6% | Apr 14, 2020 | SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficientl... |
| CVE-2020-6229 | MEDIUM | 6.1 | 0.7% | Apr 14, 2020 | SAP NetWeaver AS ABAP (Business Server Pages application CRM_BSP_FRAME), versions 700, 701, 702, 710, 711, 730, 731, 740... |
| CVE-2020-6226 | MEDIUM | 5.4 | 0.6% | Apr 14, 2020 | SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficientl... |
| CVE-2020-6224 | MEDIUM | 6.2 | 1.1% | Apr 14, 2020 | SAP NetWeaver AS Java (HTTP Service), versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker with adminis... |
| CVE-2020-6223 | MEDIUM | 6.1 | 0.7% | Apr 14, 2020 | The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modif... |
| CVE-2020-6222 | MEDIUM | 5.4 | 0.7% | Apr 14, 2020 | SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), versions 4.1, 4.2, does not suffi... |
| CVE-2020-6221 | MEDIUM | 5.4 | 0.6% | Apr 14, 2020 | Web Intelligence HTML interface in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, does not suff... |
| CVE-2020-6218 | MEDIUM | 5 | 0.9% | Apr 14, 2020 | Admin tools and Query Builder in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attac... |
| CVE-2020-6216 | MEDIUM | 6.1 | 0.7% | Apr 14, 2020 | SAP Business Objects Business Intelligence Platform (BI Launchpad), version 4.2, does not sufficiently encode user-contr... |
| CVE-2020-6214 | MEDIUM | 4.7 | 0.6% | Apr 14, 2020 | SAP S/4HANA (Financial Products Subledger), version 100, uses an incorrect authorization object in some reports. Althoug... |
| CVE-2020-7802 | MEDIUM | 5.3 | 0.9% | Apr 14, 2020 | The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Incorrect Default... |
| CVE-2020-7801 | MEDIUM | 5.3 | 0.9% | Apr 14, 2020 | The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Exposure of Sensi... |
| CVE-2020-10381 | MEDIUM | 5.3 | 1.1% | Apr 14, 2020 | An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. The... |
| CVE-2020-7958 | MEDIUM | 6 | 0.6% | Apr 14, 2020 | An issue was discovered on OnePlus 7 Pro devices before 10.0.3.GM21BA. The firmware was found to contain functionality t... |
| CVE-2020-9461 | MEDIUM | 5.4 | 1.3% | Apr 14, 2020 | Octech Oempro 4.7 through 4.11 allow stored XSS by an authenticated user. The FolderName parameter of the Media.CreateFo... |
| CVE-2020-9460 | MEDIUM | 5.4 | 1.3% | Apr 14, 2020 | Octech Oempro 4.7 through 4.11 allow XSS by an authenticated user. The parameter CampaignName in Campaign.Create is vuln... |
| CVE-2020-4151 | MEDIUM | 6.5 | 1.1% | Apr 14, 2020 | IBM QRadar SIEM 7.3.0 through 7.3.3 could allow an authenticated attacker to perform unauthorized actions due to imprope... |
| CVE-2020-11743 | MEDIUM | 5.5 | 0.5% | Apr 14, 2020 | An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of a bad err... |
| CVE-2020-11742 | MEDIUM | 5.5 | 0.4% | Apr 14, 2020 | An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of bad conti... |
| CVE-2020-11740 | MEDIUM | 5.5 | 0.4% | Apr 14, 2020 | An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain ... |
| CVE-2020-1730 | MEDIUM | 5.3 | 3.1% | Apr 13, 2020 | A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabl... |
| CVE-2020-6456 | MEDIUM | 6.5 | 1.4% | Apr 13, 2020 | Insufficient validation of untrusted input in clipboard in Google Chrome prior to 81.0.4044.92 allowed a local attacker ... |
| CVE-2020-6446 | MEDIUM | 6.5 | 1.6% | Apr 13, 2020 | Insufficient policy enforcement in trusted types in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to byp... |
| CVE-2020-6445 | MEDIUM | 6.5 | 1.9% | Apr 13, 2020 | Insufficient policy enforcement in trusted types in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to byp... |
| CVE-2020-6444 | MEDIUM | 6.3 | 1.4% | Apr 13, 2020 | Uninitialized use in WebRTC in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now