2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-1893 | HIGH | 7.5 | 1.1% | Mar 3, 2020 | Insufficient boundary checks when decoding JSON in TryParse reads out of bounds memory, potentially leading to DOS. This... |
| CVE-2020-1892 | HIGH | 8.1 | 1.1% | Mar 3, 2020 | Insufficient boundary checks when decoding JSON in JSON_parser allows read access to out of bounds memory, potentially l... |
| CVE-2020-1888 | HIGH | 7.5 | 1.1% | Mar 3, 2020 | Insufficient boundary checks when decoding JSON in handleBackslash reads out of bounds memory, potentially leading to DO... |
| CVE-2020-8437 | HIGH | 7.5 | 12.0% | Mar 2, 2020 | The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which al... |
| CVE-2020-8500 | HIGH | 7.2 | 3.5% | Mar 2, 2020 | In Artica Pandora FMS 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the Updater or Exten... |
| CVE-2020-4283 | HIGH | 8.6 | 1.3% | Mar 2, 2020 | IBM Security Information Queue (ISIQ) 1.0.0, 1.0.1, 1.0.2, 1.0.3, and 1.0.4 contains hard-coded credentials, such as a p... |
| CVE-2020-9549 | HIGH | 7.8 | 1.3% | Mar 2, 2020 | In PDFResurrect 0.12 through 0.19, get_type in pdf.c has an out-of-bounds write via a crafted PDF document. |
| CVE-2020-6801 | HIGH | 8.8 | 1.4% | Mar 2, 2020 | Mozilla developers reported memory safety bugs present in Firefox 72. Some of these bugs showed evidence of memory corru... |
| CVE-2020-6800 | HIGH | 8.8 | 2.3% | Mar 2, 2020 | Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of... |
| CVE-2020-6799 | HIGH | 8.8 | 1.5% | Mar 2, 2020 | Command line arguments could have been injected during Firefox invocation as a shell handler for certain unsupported fil... |
| CVE-2020-6796 | HIGH | 8.8 | 1.6% | Mar 2, 2020 | A content process could have modified shared memory relating to crash reporting information, crash itself, and cause an ... |
| CVE-2020-9545 | HIGH | 7.5 | 1.3% | Mar 2, 2020 | Pale Moon 28.x before 28.8.4 has a segmentation fault related to module scripting, as demonstrated by a Lacoste web site... |
| CVE-2020-9540 | HIGH | 7.8 | 0.4% | Mar 2, 2020 | Sophos HitmanPro.Alert before build 861 allows local elevation of privilege. |
| CVE-2020-9535 | HIGH | 8.8 | 1.6% | Mar 2, 2020 | fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup_Wizard webpage parameter ... |
| CVE-2020-9534 | HIGH | 8.8 | 1.6% | Mar 2, 2020 | fmwlan.c on D-Link DIR-615Jx10 devices has a stack-based buffer overflow via the formWlanSetup webpage parameter when f_... |
| CVE-2020-9449 | HIGH | 8.8 | 1.0% | Feb 28, 2020 | An insecure random number generation vulnerability in BlaB! AX, BlaB! AX Pro, BlaB! WS (client), and BlaB! WS Pro (clien... |
| CVE-2020-1881 | HIGH | 7.5 | 0.8% | Feb 28, 2020 | NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have have ... |
| CVE-2020-1876 | HIGH | 7.5 | 0.8% | Feb 28, 2020 | NIP6800;Secospace USG6600;USG9500 with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an out-of-boun... |
| CVE-2020-1873 | HIGH | 7.5 | 0.8% | Feb 28, 2020 | NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an ou... |
| CVE-2020-1860 | HIGH | 7.5 | 0.7% | Feb 28, 2020 | NIP6800;Secospace USG6600;USG9500 products with versions of V500R001C30; V500R001C60SPC500; V500R005C00SPC100 have an ac... |
| CVE-2020-1844 | HIGH | 7.8 | 0.2% | Feb 28, 2020 | PCManager with versions earlier than 10.0.5.51 have a privilege escalation vulnerability in Huawei PCManager products. A... |
| CVE-2020-9463 | HIGH | 8.8 | 4.1% | Feb 28, 2020 | Centreon 19.10 allows remote authenticated users to execute arbitrary OS commands via shell metacharacters in the server... |
| CVE-2020-5247 | HIGH | 7.5 | 2.5% | Feb 28, 2020 | In Puma (RubyGem) before 4.3.2 and before 3.12.3, if an application using Puma allows untrusted input in a response head... |
| CVE-2020-9442 | HIGH | 7.8 | 0.6% | Feb 28, 2020 | OpenVPN Connect 3.1.0.361 on Windows has Insecure Permissions for %PROGRAMDATA%\OpenVPN Connect\drivers\tap\amd64\win10,... |
| CVE-2020-9431 | HIGH | 7.5 | 2.7% | Feb 27, 2020 | In Wireshark 3.2.0 to 3.2.1, 3.0.0 to 3.0.8, and 2.6.0 to 2.6.14, the LTE RRC dissector could leak memory. This was addr... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now