2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27340 | MEDIUM | 6.1 | 0.8% | Dec 18, 2020 | The online help portal of Mitel MiCollab before 9.2 could allow an attacker to redirect a user to an unauthorized websit... |
| CVE-2020-27154 | HIGH | 8.8 | 1.0% | Dec 18, 2020 | The chat window of Mitel BusinessCTI Enterprise (MBC-E) Client for Windows before 6.4.11 and 7.x before 7.0.3 could allo... |
| CVE-2020-25612 | MEDIUM | 4.9 | 0.8% | Dec 18, 2020 | The NuPoint Messenger of Mitel MiCollab before 9.2 could allow an attacker with escalated privilege to access user files... |
| CVE-2020-25611 | MEDIUM | 6.1 | 0.6% | Dec 18, 2020 | The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending ... |
| CVE-2020-25610 | MEDIUM | 5.3 | 0.9% | Dec 18, 2020 | The AWV component of Mitel MiCollab before 9.2 could allow an attacker to gain access to a web conference due to insuffi... |
| CVE-2020-25609 | MEDIUM | 5.4 | 0.7% | Dec 18, 2020 | The NuPoint Messenger Portal of Mitel MiCollab before 9.2 could allow an authenticated attacker to execute arbitrary scr... |
| CVE-2020-25608 | HIGH | 7.2 | 0.9% | Dec 18, 2020 | The SAS portal of Mitel MiCollab before 9.2 could allow an attacker to access user credentials due to improper input val... |
| CVE-2020-25606 | MEDIUM | 6.1 | 0.6% | Dec 18, 2020 | The AWV component of Mitel MiCollab before 9.2 could allow an attacker to view system information by sending arbitrary c... |
| CVE-2020-24693 | LOW | 3.3 | 0.3% | Dec 18, 2020 | The Ignite portal in Mitel MiContact Center Business before 9.3.0.0 could allow a local attacker to view system informat... |
| CVE-2020-7838 | HIGH | 8.8 | 1.2% | Dec 18, 2020 | A arbitrary code execution vulnerability exists in the way that the Stove client improperly validates input value. An at... |
| CVE-2020-28052 | HIGH | 8.1 | 7.1% | Dec 18, 2020 | An issue was discovered in Legion of the Bouncy Castle BC Java 1.65 and 1.66. The OpenBSDBCrypt.checkPassword utility me... |
| CVE-2020-27780 | CRITICAL | 9.8 | 2.0% | Dec 18, 2020 | A flaw was found in Linux-Pam in versions prior to 1.5.1 in the way it handle empty passwords for non-existing users. Wh... |
| CVE-2020-14232 | HIGH | 8.8 | 1.3% | Dec 18, 2020 | A vulnerability in the input parameter handling of HCL Notes v9 could potentially be exploited by an authenticated attac... |
| CVE-2020-13931 | CRITICAL | 9.8 | 3.7% | Dec 18, 2020 | If Apache TomEE 8.0.0-M1 - 8.0.3, 7.1.0 - 7.1.3, 7.0.0-M1 - 7.0.8, 1.0.0 - 1.7.5 is configured to use the embedded Activ... |
| CVE-2020-13528 | MEDIUM | 5.3 | 2.9% | Dec 18, 2020 | An information disclosure vulnerability exists in the Web Manager and telnet CLI functionality of Lantronix XPort EDGE 3... |
| CVE-2020-13527 | MEDIUM | 4.5 | 0.6% | Dec 18, 2020 | An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0... |
| CVE-2020-13518 | MEDIUM | 6.5 | 0.5% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c402084 functionality of NZXT CAM 4.8.0.... |
| CVE-2020-13517 | MEDIUM | 5.5 | 0.5% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406104 functionality of NZXT CAM 4.8.0.... |
| CVE-2020-13516 | MEDIUM | 6.5 | 0.5% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406144 functionality of NZXT CAM 4.8.0.... |
| CVE-2020-13511 | MEDIUM | 6.5 | 0.5% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ... |
| CVE-2020-13510 | MEDIUM | 6.5 | 0.4% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ... |
| CVE-2020-13509 | MEDIUM | 6.5 | 0.5% | Dec 18, 2020 | An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ... |
| CVE-2020-20142 | MEDIUM | 6.1 | 1.6% | Dec 17, 2020 | Cross Site Scripting (XSS) vulnerability in the "To Remote CSV" component under "Open" Menu in Flexmonster Pivot Table &... |
| CVE-2020-20141 | MEDIUM | 6.1 | 1.6% | Dec 17, 2020 | Cross Site Scripting (XSS) vulnerability in the To OLAP (XMLA) component Under the Connect menu in Flexmonster Pivot Tab... |
| CVE-2020-20140 | MEDIUM | 6.1 | 1.6% | Dec 17, 2020 | Cross Site Scripting (XSS) vulnerability in Remote Report component under the Open menu in Flexmonster Pivot Table & Cha... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now