2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-1893HIGH7.5Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This...
CVE-2020-1892HIGH8.1Insufficient boundary checks when decoding JSON in JSON_parser allows read access to out of bounds memory, potentially l...
CVE-2020-1888HIGH7.5Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DO...
CVE-2020-8437HIGH7.5The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which al...
CVE-2020-8500HIGH7.2In Artica Pandora FMS 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the Updater or Exten...
CVE-2020-4283HIGH8.6IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 contains hard-coded credentials, such as a p...
CVE-2020-9549HIGH7.8In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document.
CVE-2020-6801HIGH8.8Mozilla developers reported memory safety bugs present in Firefox 72. Some of these bugs showed evidence of memory corru...
CVE-2020-6800HIGH8.8Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of...
CVE-2020-6799HIGH8.8Command line arguments could have been injected during Firefox invocation as a shell handler for certain unsupported fil...
CVE-2020-6796HIGH8.8A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an ...
CVE-2020-9545HIGH7.5Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site...
CVE-2020-9540HIGH7.8Sophos HitmanPro.Alert before build 861 allows local elevation of privilege.
CVE-2020-9535HIGH8.8fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup_Wizard webpage parameter ...
CVE-2020-9534HIGH8.8fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup webpage parameter when f_...
CVE-2020-9449HIGH8.8An insecure random number generation vulnerability in BlaB! AX, BlaB! AX Pro, BlaB! WS (client), and BlaB! WS Pro (clien...
CVE-2020-1881HIGH7.5NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have have ...
CVE-2020-1876HIGH7.5NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-boun...
CVE-2020-1873HIGH7.5NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an ou...
CVE-2020-1860HIGH7.5NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an ac...
CVE-2020-1844HIGH7.8PCManager with versions earlier than 10.0.5.51 have a privilege escalation vulnerability in Huawei PCManager products. A...
CVE-2020-9463HIGH8.8Centreon 19.10 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the server...
CVE-2020-5247HIGH7.5In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted input in a response head...
CVE-2020-9442HIGH7.8OpenVPN Connect 3.1.0.361 on Windows has Insecure Permissions for %PROGRAMDATA%\OpenVPN Connect\drivers\tap\amd64\win10,...
CVE-2020-9431HIGH7.5In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak memory. This was addr...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now