2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-5525HIGH8Aterm series (Aterm WF1200C firmware Ver1.2.1 and earlier, Aterm WG1200CR firmware Ver1.2.1 and earlier, Aterm WG2600HS ...
CVE-2020-5524HIGH8.8Aterm series (Aterm WF1200C firmware Ver1.2.1 and earlier, Aterm WG1200CR firmware Ver1.2.1 and earlier, Aterm WG2600HS ...
CVE-2020-5243HIGH7.5uap-core before 0.7.3 is vulnerable to a denial of service attack when processing crafted User-Agent strings. Some regex...
CVE-2020-8601HIGH7.8Trend Micro Vulnerability Protection 2.0 is affected by a vulnerability that could allow an attack to use the product in...
CVE-2020-5242HIGH8.8openHAB before 2.5.2 allow a remote attacker to use REST calls to install the EXEC binding or EXEC transformation servic...
CVE-2020-9318HIGH7.2Red Gate SQL Monitor 9.0.13 through 9.2.14 allows an administrative user to perform a SQL injection attack by configurin...
CVE-2020-6968HIGH7.8Honeywell INNCOM INNControl 3 allows workstation users to escalate application user privileges through the modification ...
CVE-2020-3764HIGH7.8Adobe Media Encoder versions 14.0 and earlier have an out-of-bounds write vulnerability. Successful exploitation could l...
CVE-2020-9283HIGH7.5golang.org/x/crypto before v0.0.0-20200220183623-bac4c82f6975 for Go allows a panic during signature verification in the...
CVE-2020-9273HIGH8.8In ProFTPD 1.3.7, it is possible to corrupt the memory pool by interrupting the data transfer channel. This triggers a u...
CVE-2020-9272HIGH7.5ProFTPD 1.3.7 has an out-of-bounds (OOB) read vulnerability in mod_cap via the cap_text.c cap_to_text function.
CVE-2020-9308HIGH8.8archive_read_support_format_rar5.c in libarchive before 3.4.2 attempts to unpack a RAR5 file with an invalid or corrupte...
CVE-2020-3945HIGH7.5vRealize Operations for Horizon Adapter (6.7.x prior to 6.7.1 and 6.6.x prior to 6.6.1) contains an information disclosu...
CVE-2020-3944HIGH8.6vRealize Operations for Horizon Adapter (6.7.x prior to 6.7.1 and 6.6.x prior to 6.6.1) has an improper trust store conf...
CVE-2020-3114HIGH8.8A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthe...
CVE-2020-3112HIGH8.8A vulnerability in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remot...
CVE-2020-6062HIGH7.5An exploitable denial-of-service vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A speci...
CVE-2020-8959HIGH7.8Western Digital WesternDigitalSSDDashboardSetup.exe before 3.0.2.0 allows DLL Hijacking.
CVE-2020-4204HIGH7.8IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 is vulnerable to a buf...
CVE-2020-4135HIGH7.5IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 9.7, 10.1, 10.5, 11.1, and 11.5 could allow an unauthe...
CVE-2020-9270HIGH8.8ICE Hrm 26.2.0 is vulnerable to CSRF that leads to password reset via service.php.
CVE-2020-9269HIGH7.2SOPlanning 1.45 is vulnerable to authenticated SQL Injection that leads to command execution via the users parameter, as...
CVE-2020-9268HIGH7.5SoPlanning 1.45 is vulnerable to SQL Injection in the OrderBy clause, as demonstrated by the projets.php?order=nom_creat...
CVE-2020-9265HIGH8.2phpMyChat-Plus 1.98 is vulnerable to multiple SQL injections against the deluser.php Delete User functionality, as demon...
CVE-2020-6844HIGH8.8In TopManage OLK 2020, login CSRF can be chained with another vulnerability in order to takeover admin and user accounts...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now