2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-28396HIGH7.3A vulnerability has been identified in SICAM A8000 CP-8000 (All versions < V16), SICAM A8000 CP-8021 (All versions < V16...
CVE-2020-25707Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate is a duplicate of CVE-2020-2891
CVE-2020-25235HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The password used for a...
CVE-2020-25234HIGH7.7A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All...
CVE-2020-25233MEDIUM5.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The firmware update of ...
CVE-2020-25232HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an ...
CVE-2020-25231MEDIUM5.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All...
CVE-2020-25230HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an ...
CVE-2020-25229HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The implemented encrypt...
CVE-2020-25228CRITICAL9.8A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). A service available on ...
CVE-2020-20189CRITICAL9.8SQL Injection vulnerability in NewPK 1.1 via the title parameter to admin\newpost.php.
CVE-2020-15796HIGH7.5A vulnerability has been identified in SIMATIC ET 200SP Open Controller (incl. SIPLUS variants) (V20.8), SIMATIC S7-1500...
CVE-2020-14368HIGH7.1A flaw was found in Eclipse Che in versions prior to 7.14.0 that impacts CodeReady Workspaces. When configured with cook...
CVE-2020-8286HIGH7.5curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verificatio...
CVE-2020-8285HIGH7.5curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcar...
CVE-2020-8284LOW3.7A malicious server can use the FTP PASV response to trick curl 7.73.0 and earlier into connecting back to a given IP add...
CVE-2020-8283HIGH8.8An authorised user on a Windows host running Citrix Universal Print Server can perform arbitrary command execution as SY...
CVE-2020-8282HIGH8.8A security issue was found in EdgePower 24V/54V firmware v1.7.0 and earlier where, due to missing CSRF protections, an a...
CVE-2020-8258HIGH7.5Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-...
CVE-2020-8257CRITICAL9.8Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-...
CVE-2020-8231HIGH7.5Due to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data.
CVE-2020-8177HIGH7.8curl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead to...
CVE-2020-8169HIGH7.5curl 7.62.0 through 7.70.0 is vulnerable to an information disclosure vulnerability that can lead to a partial password ...
CVE-2020-29511MEDIUM5.6The encoding/xml package in Go (all versions) does not correctly preserve the semantics of element namespace prefixes du...
CVE-2020-29510MEDIUM5.6The encoding/xml package in Go versions 1.15 and earlier does not correctly preserve the semantics of directives during ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now