2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-5525 | HIGH | 8 | 0.9% | Feb 21, 2020 | Aterm series (Aterm WF1200C firmware Ver1.2.1 and earlier, Aterm WG1200CR firmware Ver1.2.1 and earlier, Aterm WG2600HS ... |
| CVE-2020-5524 | HIGH | 8.8 | 1.0% | Feb 21, 2020 | Aterm series (Aterm WF1200C firmware Ver1.2.1 and earlier, Aterm WG1200CR firmware Ver1.2.1 and earlier, Aterm WG2600HS ... |
| CVE-2020-5243 | HIGH | 7.5 | 2.2% | Feb 21, 2020 | uap-core before 0.7.3 is vulnerable to a denial of service attack when processing crafted User-Agent strings. Some regex... |
| CVE-2020-8601 | HIGH | 7.8 | 0.4% | Feb 20, 2020 | Trend Micro Vulnerability Protection 2.0 is affected by a vulnerability that could allow an attack to use the product in... |
| CVE-2020-5242 | HIGH | 8.8 | 2.0% | Feb 20, 2020 | openHAB before 2.5.2 allow a remote attacker to use REST calls to install the EXEC binding or EXEC transformation servic... |
| CVE-2020-9318 | HIGH | 7.2 | 0.9% | Feb 20, 2020 | Red Gate SQL Monitor 9.0.13 through 9.2.14 allows an administrative user to perform a SQL injection attack by configurin... |
| CVE-2020-6968 | HIGH | 7.8 | 0.3% | Feb 20, 2020 | Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification ... |
| CVE-2020-3764 | HIGH | 7.8 | 4.9% | Feb 20, 2020 | Adobe Media Encoder versions 14.0 and earlier have an out-of-bounds write vulnerability. Successful exploitation could l... |
| CVE-2020-9283 | HIGH | 7.5 | 20.9% | Feb 20, 2020 | golang.org/x/crypto before v0.0.0-20200220183623-bac4c82f6975 for Go allows a panic during signature verification in the... |
| CVE-2020-9273 | HIGH | 8.8 | 12.0% | Feb 20, 2020 | In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a u... |
| CVE-2020-9272 | HIGH | 7.5 | 2.1% | Feb 20, 2020 | ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap via the cap_text.c cap_to_text function. |
| CVE-2020-9308 | HIGH | 8.8 | 2.2% | Feb 20, 2020 | archive_read_support_format_rar5.c in libarchive before 3.4.2 attempts to unpack a RAR5 file with an invalid or corrupte... |
| CVE-2020-3945 | HIGH | 7.5 | 1.4% | Feb 19, 2020 | vRealize Operations for Horizon Adapter (6.7.x prior to 6.7.1 and 6.6.x prior to 6.6.1) contains an information disclosu... |
| CVE-2020-3944 | HIGH | 8.6 | 1.5% | Feb 19, 2020 | vRealize Operations for Horizon Adapter (6.7.x prior to 6.7.1 and 6.6.x prior to 6.6.1) has an improper trust store conf... |
| CVE-2020-3114 | HIGH | 8.8 | 0.6% | Feb 19, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthe... |
| CVE-2020-3112 | HIGH | 8.8 | 1.5% | Feb 19, 2020 | A vulnerability in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remot... |
| CVE-2020-6062 | HIGH | 7.5 | 6.0% | Feb 19, 2020 | An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A speci... |
| CVE-2020-8959 | HIGH | 7.8 | 0.4% | Feb 19, 2020 | Western Digital WesternDigitalSSDDashboardSetup.exe before 3.0.2.0 allows DLL Hijacking. |
| CVE-2020-4204 | HIGH | 7.8 | 0.6% | Feb 19, 2020 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a buf... |
| CVE-2020-4135 | HIGH | 7.5 | 2.9% | Feb 19, 2020 | IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow an unauthe... |
| CVE-2020-9270 | HIGH | 8.8 | 0.5% | Feb 18, 2020 | ICE Hrm 26.2.0 is vulnerable to CSRF that leads to password reset via service.php. |
| CVE-2020-9269 | HIGH | 7.2 | 2.4% | Feb 18, 2020 | SOPlanning 1.45 is vulnerable to authenticated SQL Injection that leads to command execution via the users parameter, as... |
| CVE-2020-9268 | HIGH | 7.5 | 1.4% | Feb 18, 2020 | SoPlanning 1.45 is vulnerable to SQL Injection in the OrderBy clause, as demonstrated by the projets.php?order=nom_creat... |
| CVE-2020-9265 | HIGH | 8.2 | 1.5% | Feb 18, 2020 | phpMyChat-Plus 1.98 is vulnerable to multiple SQL injections against the deluser.php Delete User functionality, as demon... |
| CVE-2020-6844 | HIGH | 8.8 | 0.7% | Feb 18, 2020 | In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now