2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-10831 | HIGH | 7.5 | 0.2% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can trigger an up... |
| CVE-2020-10829 | HIGH | 7.8 | 0.2% | Mar 24, 2020 | An issue was discovered on Samsung mobile devices with O(8.0), P(9.0), and Q(10.0) (Broadcom chipsets) software. A kerne... |
| CVE-2020-4253 | HIGH | 8.8 | 0.9% | Mar 24, 2020 | IBM Content Navigator 3.0CD does not invalidate session after logout which could allow an authenticated user to imperson... |
| CVE-2020-10934 | HIGH | 7.2 | 1.3% | Mar 24, 2020 | Acyba AcyMailing before 6.9.2 mishandles file uploads by admins. |
| CVE-2020-10931 | HIGH | 7.5 | 28.1% | Mar 24, 2020 | Memcached 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (daemon crash) via a crafted binary pr... |
| CVE-2020-10684 | HIGH | 7.1 | 0.3% | Mar 24, 2020 | A flaw was found in Ansible Engine, all versions 2.7.x, 2.8.x and 2.9.x prior to 2.7.17, 2.8.9 and 2.9.6 respectively, w... |
| CVE-2020-10875 | HIGH | 7.5 | 1.7% | Mar 23, 2020 | Motorola FX9500 devices allow remote attackers to conduct absolute path traversal attacks, as demonstrated by PL/SQL Ser... |
| CVE-2020-8864 | HIGH | 8.8 | 80.2% | Mar 23, 2020 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-86... |
| CVE-2020-8863 | HIGH | 8.8 | 76.7% | Mar 23, 2020 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-86... |
| CVE-2020-8859 | HIGH | 7.5 | 3.5% | Mar 23, 2020 | This vulnerability allows remote attackers to create a denial-of-service condition on affected installations of ELOG Ele... |
| CVE-2020-10874 | HIGH | 7.5 | 1.4% | Mar 23, 2020 | Motorola FX9500 devices allow remote attackers to read database files. |
| CVE-2020-7479 | HIGH | 7.8 | 0.5% | Mar 23, 2020 | A CWE-306: Missing Authentication for Critical Function vulnerability exists in IGSS (Versions 14 and prior using the se... |
| CVE-2020-7478 | HIGH | 7.5 | 4.0% | Mar 23, 2020 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the se... |
| CVE-2020-7477 | HIGH | 7.5 | 1.3% | Mar 23, 2020 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module ... |
| CVE-2020-7476 | HIGH | 7.8 | 0.4% | Mar 23, 2020 | A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could ... |
| CVE-2020-7474 | HIGH | 7.8 | 0.4% | Mar 23, 2020 | A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PME... |
| CVE-2020-8875 | HIGH | 8.8 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-9392 | HIGH | 7.3 | 1.7% | Mar 23, 2020 | An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permiss... |
| CVE-2020-9759 | HIGH | 7.8 | 0.5% | Mar 23, 2020 | A Vulnerability of LG Electronic web OS TV Emulator could allow an attacker to escalate privileges and overwrite certain... |
| CVE-2020-8511 | HIGH | 7.2 | 3.1% | Mar 23, 2020 | In Artica Pandora FMS through 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the File Rep... |
| CVE-2020-7935 | HIGH | 7.2 | 3.1% | Mar 23, 2020 | Artica Pandora FMS through 7.42 is vulnerable to remote PHP code execution because of an Unrestricted Upload Of A File W... |
| CVE-2020-6449 | HIGH | 8.8 | 2.7% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6429 | HIGH | 8.8 | 2.3% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6428 | HIGH | 8.8 | 2.3% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6427 | HIGH | 8.8 | 2.4% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now