2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-5530 | HIGH | 8.8 | 0.8% | Feb 18, 2020 | Cross-site request forgery (CSRF) vulnerability in Easy Property Listings versions prior to 3.4 allows remote attackers ... |
| CVE-2020-8011 | HIGH | 7.5 | 2.2% | Feb 18, 2020 | CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference ... |
| CVE-2020-1812 | HIGH | 7.8 | 0.6% | Feb 18, 2020 | HUAWEI P30 smartphones with versions earlier than 10.0.0.173(C00E73R1P11) have an improper authentication vulnerability.... |
| CVE-2020-1790 | HIGH | 8.8 | 1.1% | Feb 18, 2020 | GaussDB 200 with version of 6.5.1 have a command injection vulnerability. The software constructs part of a command usin... |
| CVE-2020-1816 | HIGH | 7.5 | 0.9% | Feb 18, 2020 | Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001... |
| CVE-2020-1815 | HIGH | 7.5 | 0.7% | Feb 18, 2020 | Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; Secospace USG6600 and USG9500 versions V500R001... |
| CVE-2020-1811 | HIGH | 8.8 | 1.1% | Feb 18, 2020 | GaussDB 200 with version of 6.5.1 have a command injection vulnerability. Due to insufficient input validation, remote a... |
| CVE-2020-1856 | HIGH | 7.5 | 0.8% | Feb 17, 2020 | Huawei NGFW Module, NIP6300, NIP6600, Secospace USG6500, Secospace USG6600, and USG9500 versions V500R001C30, V500R001C6... |
| CVE-2020-1841 | HIGH | 7.5 | 1.0% | Feb 17, 2020 | Huawei CloudLink Board version 20.0.0; DP300 version V500R002C00; RSE6500 versions V100R001C00, V500R002C00, and V500R00... |
| CVE-2020-1829 | HIGH | 7.5 | 0.7% | Feb 17, 2020 | Huawei NIP6800 versions V500R001C30 and V500R001C60SPC500; and Secospace USG6600 and USG9500 versions V500R001C30SPC200,... |
| CVE-2020-1827 | HIGH | 7.5 | 0.7% | Feb 17, 2020 | Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; and Secospace USG6600 and USG9500 version... |
| CVE-2020-1858 | HIGH | 7.5 | 0.8% | Feb 17, 2020 | Huawei products NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00SPC100; Secospace USG6600 versions V500R... |
| CVE-2020-1828 | HIGH | 7.5 | 0.7% | Feb 17, 2020 | Huawei NIP6800 versions V500R001C30, V500R001C60SPC500, and V500R005C00; and Secospace USG6600 and USG9500 versions V500... |
| CVE-2020-7597 | HIGH | 8.8 | 2.9% | Feb 17, 2020 | codecov-node npm module before 3.6.5 allows remote attackers to execute arbitrary commands.The value provided as part of... |
| CVE-2020-9043 | HIGH | 8.8 | 8.2% | Feb 17, 2020 | The wpCentral plugin before 1.5.1 for WordPress allows disclosure of the connection key. |
| CVE-2020-1704 | HIGH | 7.8 | 0.3% | Feb 17, 2020 | An insecure modification vulnerability in the /etc/passwd file was found in all versions of OpenShift ServiceMesh (maist... |
| CVE-2020-8795 | HIGH | 7.5 | 1.2% | Feb 17, 2020 | In GitLab Enterprise Edition (EE) 12.5.0 through 12.7.5, sharing a group with a group could grant project access to unau... |
| CVE-2020-9005 | HIGH | 7.8 | 2.2% | Feb 17, 2020 | meshsystem.dll in Valve Dota 2 through 2020-02-17 allows remote attackers to achieve code execution or denial of service... |
| CVE-2020-9034 | HIGH | 7.5 | 0.9% | Feb 17, 2020 | Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices mishandle session vali... |
| CVE-2020-8997 | HIGH | 8.8 | 0.6% | Feb 16, 2020 | Older generation Abbott FreeStyle Libre sensors allow remote attackers within close proximity to enable write access to ... |
| CVE-2020-6068 | HIGH | 8.8 | 3.6% | Feb 14, 2020 | An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll PNG pngread parser of the Accusoft ImageGea... |
| CVE-2020-8843 | HIGH | 7.4 | 1.1% | Feb 14, 2020 | An issue was discovered in Istio 1.3 through 1.3.6. Under certain circumstances, it is possible to bypass a specifically... |
| CVE-2020-8858 | HIGH | 8.8 | 7.4% | Feb 14, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Moxa MGate 5105-MB-EIP... |
| CVE-2020-8857 | HIGH | 7.8 | 5.9% | Feb 14, 2020 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 9.7.0.294... |
| CVE-2020-8856 | HIGH | 7.8 | 19.4% | Feb 14, 2020 | This vulnerability allows remote atackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0.... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now