2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-6231MEDIUM5.4SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficientl...
CVE-2020-6229MEDIUM6.1SAP NetWeaver AS ABAP (Business Server Pages application CRM_BSP_FRAME), versions 700, 701, 702, 710, 711, 730, 731, 740...
CVE-2020-6226MEDIUM5.4SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), version 4.2, does not sufficientl...
CVE-2020-6224MEDIUM6.2SAP NetWeaver AS Java (HTTP Service), versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, allows an attacker with adminis...
CVE-2020-6223MEDIUM6.1The open document of SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attacker to modif...
CVE-2020-6222MEDIUM5.4SAP Business Objects Business Intelligence Platform (Web Intelligence HTML interface), versions 4.1, 4.2, does not suffi...
CVE-2020-6221MEDIUM5.4Web Intelligence HTML interface in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, does not suff...
CVE-2020-6218MEDIUM5Admin tools and Query Builder in SAP Business Objects Business Intelligence Platform, versions 4.1, 4.2, allows an attac...
CVE-2020-6216MEDIUM6.1SAP Business Objects Business Intelligence Platform (BI Launchpad), version 4.2, does not sufficiently encode user-contr...
CVE-2020-6214MEDIUM4.7SAP S/4HANA (Financial Products Subledger), version 100, uses an incorrect authorization object in some reports. Althoug...
CVE-2020-7802MEDIUM5.3The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Incorrect Default...
CVE-2020-7801MEDIUM5.3The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Exposure of Sensi...
CVE-2020-10381MEDIUM5.3An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. The...
CVE-2020-7958MEDIUM6An issue was discovered on OnePlus 7 Pro devices before 10.0.3.GM21BA. The firmware was found to contain functionality t...
CVE-2020-9461MEDIUM5.4Octech Oempro 4.7 through 4.11 allow stored XSS by an authenticated user. The FolderName parameter of the Media.CreateFo...
CVE-2020-9460MEDIUM5.4Octech Oempro 4.7 through 4.11 allow XSS by an authenticated user. The parameter CampaignName in Campaign.Create is vuln...
CVE-2020-4151MEDIUM6.5IBM QRadar SIEM 7.3.0 through 7.3.3 could allow an authenticated attacker to perform unauthorized actions due to imprope...
CVE-2020-11743MEDIUM5.5An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of a bad err...
CVE-2020-11742MEDIUM5.5An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of bad conti...
CVE-2020-11740MEDIUM5.5An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain ...
CVE-2020-1730MEDIUM5.3A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabl...
CVE-2020-6456MEDIUM6.5Insufficient validation of untrusted input in clipboard in Google Chrome prior to 81.0.4044.92 allowed a local attacker ...
CVE-2020-6446MEDIUM6.5Insufficient policy enforcement in trusted types in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to byp...
CVE-2020-6445MEDIUM6.5Insufficient policy enforcement in trusted types in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to byp...
CVE-2020-6444MEDIUM6.3Uninitialized use in WebRTC in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to potentially exploit heap...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now