2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-10847 | MEDIUM | 6.8 | 0.1% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) (Galaxy S8 and Note8) software. Facial recognition can be ... |
| CVE-2020-10846 | MEDIUM | 5.5 | 0.1% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.x) and Q(10.x) software. Attackers can enable the OEM unlock ... |
| CVE-2020-10845 | MEDIUM | 6.4 | 0.1% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. There is a race condition l... |
| CVE-2020-10844 | MEDIUM | 6.5 | 0.4% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.x), and Q(10.0) software. There is an out-of-bounds r... |
| CVE-2020-10839 | MEDIUM | 6.8 | 0.1% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factor... |
| CVE-2020-10834 | MEDIUM | 5.3 | 0.3% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) software. Attackers can view notifications on the lock scr... |
| CVE-2020-4309 | MEDIUM | 5.3 | 1.3% | Mar 24, 2020 | IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid i... |
| CVE-2020-10385 | MEDIUM | 5.4 | 4.4% | Mar 24, 2020 | A stored cross-site scripting (XSS) vulnerability exists in the WPForms Contact Form (aka wpforms-lite) plugin before 1.... |
| CVE-2020-9359 | MEDIUM | 5.3 | 1.5% | Mar 24, 2020 | KDE Okular before 1.10.0 allows code execution via an action link in a PDF document. |
| CVE-2020-1744 | MEDIUM | 5.6 | 1.1% | Mar 24, 2020 | A flaw was found in keycloak before version 9.0.1. When configuring an Conditional OTP Authentication Flow as a post log... |
| CVE-2020-10570 | MEDIUM | 6.1 | 0.4% | Mar 24, 2020 | The Telegram application through 5.12 for Android, when Show Popup is enabled, might allow physically proximate attacker... |
| CVE-2020-5252 | MEDIUM | 4.1 | 0.4% | Mar 23, 2020 | The command-line "safety" package for Python has a potential security issue. There are two Python characteristics that a... |
| CVE-2020-8866 | MEDIUM | 6.5 | 9.6% | Mar 23, 2020 | This vulnerability allows remote attackers to create arbitrary files on affected installations of Horde Groupware Webmai... |
| CVE-2020-8865 | MEDIUM | 6.3 | 6.8% | Mar 23, 2020 | This vulnerability allows remote attackers to execute local PHP files on affected installations of Horde Groupware Webma... |
| CVE-2020-7482 | MEDIUM | 6.1 | 0.8% | Mar 23, 2020 | A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andov... |
| CVE-2020-7481 | MEDIUM | 6.1 | 0.8% | Mar 23, 2020 | A CWE-79:Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability exists Andov... |
| CVE-2020-10871 | MEDIUM | 5.3 | 1.7% | Mar 23, 2020 | In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOT... |
| CVE-2020-10870 | MEDIUM | 5.5 | 0.3% | Mar 23, 2020 | Zim through 0.72.1 creates temporary directories with predictable names. A malicious user could predict and create Zim's... |
| CVE-2020-8876 | MEDIUM | 5.5 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-... |
| CVE-2020-8874 | MEDIUM | 6.7 | 0.4% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-8873 | MEDIUM | 6.7 | 0.4% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-8872 | MEDIUM | 4.4 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt... |
| CVE-2020-8871 | MEDIUM | 6.7 | 0.6% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-4... |
| CVE-2020-8838 | MEDIUM | 6.4 | 1.6% | Mar 23, 2020 | An issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not vali... |
| CVE-2020-6426 | MEDIUM | 6.5 | 2.9% | Mar 23, 2020 | Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially expl... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now