2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-27340MEDIUM6.1The online help portal of Mitel MiCollab before 9.2 could allow an attacker to redirect a user to an unauthorized websit...
CVE-2020-27154HIGH8.8The chat window of Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.11 and 7.x before 7.0.3 could allo...
CVE-2020-25612MEDIUM4.9The NuPoint Messenger of Mitel MiCollab before 9.2 could allow an attacker with escalated privilege to access user files...
CVE-2020-25611MEDIUM6.1The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending ...
CVE-2020-25610MEDIUM5.3The AWV component of Mitel MiCollab before 9.2 could allow an attacker to gain access to a web conference due to insuffi...
CVE-2020-25609MEDIUM5.4The NuPoint Messenger Portal of Mitel MiCollab before 9.2 could allow an authenticated attacker to execute arbitrary scr...
CVE-2020-25608HIGH7.2The SAS portal of Mitel MiCollab before 9.2 could allow an attacker to access user credentials due to improper input val...
CVE-2020-25606MEDIUM6.1The AWV component of Mitel MiCollab before 9.2 could allow an attacker to view system information by sending arbitrary c...
CVE-2020-24693LOW3.3The Ignite portal in Mitel MiContact Center Business before 9.3.0.0 could allow a local attacker to view system informat...
CVE-2020-7838HIGH8.8A arbitrary code execution vulnerability exists in the way that the Stove client improperly validates input value. An at...
CVE-2020-28052HIGH8.1An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility me...
CVE-2020-27780CRITICAL9.8A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. Wh...
CVE-2020-14232HIGH8.8A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attac...
CVE-2020-13931CRITICAL9.8If Apache TomEE 8.0.0-M1 - 8.0.3, 7.1.0 - 7.1.3, 7.0.0-M1 - 7.0.8, 1.0.0 - 1.7.5 is configured to use the embedded Activ...
CVE-2020-13528MEDIUM5.3An information disclosure vulnerability exists in the Web Manager and telnet CLI functionality of Lantronix XPort EDGE 3...
CVE-2020-13527MEDIUM4.5An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0...
CVE-2020-13518MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c402084 functionality of NZXT CAM 4.8.0....
CVE-2020-13517MEDIUM5.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406104 functionality of NZXT CAM 4.8.0....
CVE-2020-13516MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406144 functionality of NZXT CAM 4.8.0....
CVE-2020-13511MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-13510MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-13509MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-20142MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the "To Remote CSV" component under "Open" Menu in Flexmonster Pivot Table &...
CVE-2020-20141MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the To OLAP (XMLA) component Under the Connect menu in Flexmonster Pivot Tab...
CVE-2020-20140MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Remote Report component under the Open menu in Flexmonster Pivot Table & Cha...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now