2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-5530HIGH8.8Cross-site request forgery (CSRF) vulnerability in Easy Property Listings versions prior to 3.4 allows remote attackers ...
CVE-2020-8011HIGH7.5CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference ...
CVE-2020-1812HIGH7.8HUAWEI P30 smartphones with versions earlier than 10.0.0.173(C00E73R1P11) have an improper authentication vulnerability....
CVE-2020-1790HIGH8.8GaussDB 200 with version of 6.5.1 have a command injection vulnerability. The software constructs part of a command usin...
CVE-2020-1816HIGH7.5Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001...
CVE-2020-1815HIGH7.5Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001...
CVE-2020-1811HIGH8.8GaussDB 200 with version of 6.5.1 have a command injection vulnerability. Due to insufficient input validation, remote a...
CVE-2020-1856HIGH7.5Huawei NGFW Module, NIP6300, NIP6600, Secospace USG6500, Secospace USG6600, and USG9500 versions V500R001C30, V500R001C6...
CVE-2020-1841HIGH7.5Huawei CloudLink Board version 20.0.0; DP300 version V500R002C00; RSE6500 versions V100R001C00, V500R002C00, and V500R00...
CVE-2020-1829HIGH7.5Huawei NIP6800 versions V500R001C30 and V500R001C60SPC500; and Secospace USG6600 and USG9500 versions V500R001C30SPC200,...
CVE-2020-1827HIGH7.5Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; and Secospace USG6600 and USG9500 version...
CVE-2020-1858HIGH7.5Huawei products NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; Secospace USG6600 versions V500R...
CVE-2020-1828HIGH7.5Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; and Secospace USG6600 and USG9500 versions V500...
CVE-2020-7597HIGH8.8codecov-node npm module before 3.6.5 allows remote attackers to execute arbitrary commands.The value provided as part of...
CVE-2020-9043HIGH8.8The wpCentral plugin before 1.5.1 for WordPress allows disclosure of the connection key.
CVE-2020-1704HIGH7.8An insecure modification vulnerability in the /etc/passwd file was found in all versions of OpenShift ServiceMesh (maist...
CVE-2020-8795HIGH7.5In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unau...
CVE-2020-9005HIGH7.8meshsystem.dll in Valve Dota 2 through 2020-02-17 allows remote attackers to achieve code execution or denial of service...
CVE-2020-9034HIGH7.5Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices mishandle session vali...
CVE-2020-8997HIGH8.8Older generation Abbott FreeStyle Libre sensors allow remote attackers within close proximity to enable write access to ...
CVE-2020-6068HIGH8.8An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG pngread parser of the Accusoft ImageGea...
CVE-2020-8843HIGH7.4An issue was discovered in Istio 1.3 through 1.3.6. Under certain circumstances, it is possible to bypass a specifically...
CVE-2020-8858HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Moxa MGate 5105-MB-EIP...
CVE-2020-8857HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.7.0.294...
CVE-2020-8856HIGH7.8This vulnerability allows remote atackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0....

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now