2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26828 | MEDIUM | 6.4 | 0.8% | Dec 9, 2020 | SAP Disclosure Management, version - 10.1, provides capabilities for authorized users to upload and download content of ... |
| CVE-2020-26826 | MEDIUM | 6.5 | 1.2% | Dec 9, 2020 | Process Integration Monitoring of SAP NetWeaver AS JAVA, versions - 7.31, 7.40, 7.50, allows an attacker to upload any f... |
| CVE-2020-26816 | MEDIUM | 4.5 | 0.2% | Dec 9, 2020 | SAP AS JAVA (Key Storage Service), versions - 7.10, 7.11, 7.20 ,7.30, 7.31, 7.40, 7.50, has the key material which is st... |
| CVE-2020-26261 | HIGH | 7.9 | 0.5% | Dec 9, 2020 | jupyterhub-systemdspawner enables JupyterHub to spawn single-user notebook servers using systemd. In jupyterhub-systemds... |
| CVE-2020-26260 | MEDIUM | 6.4 | 0.8% | Dec 9, 2020 | BookStack is a platform for storing and organising information and documentation. In BookStack before version 0.30.5, a ... |
| CVE-2020-25199 | HIGH | 7.8 | 1.2% | Dec 9, 2020 | A heap-based buffer overflow vulnerability exists within the WECON LeviStudioU Release Build 2019-09-21 and prior when p... |
| CVE-2020-21009 | — | — | — | Dec 9, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-17529 | CRITICAL | 9.8 | 2.9% | Dec 9, 2020 | Out-of-bounds Write vulnerability in TCP Stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.... |
| CVE-2020-17528 | CRITICAL | 9.1 | 3.1% | Dec 9, 2020 | Out-of-bounds Write vulnerability in TCP stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.... |
| CVE-2020-23520 | HIGH | 7.2 | 2.2% | Dec 9, 2020 | imcat 5.2 allows an authenticated file upload and consequently remote code execution via the picture functionality. |
| CVE-2020-7337 | MEDIUM | 6.7 | 0.4% | Dec 9, 2020 | Incorrect Permission Assignment for Critical Resource vulnerability in McAfee VirusScan Enterprise (VSE) prior to 8.8 Pa... |
| CVE-2020-29657 | CRITICAL | 9.1 | 1.2% | Dec 9, 2020 | In JerryScript 2.3.0, there is an out-of-bounds read in main_print_unhandled_exception in the main-utils.c file. |
| CVE-2020-29656 | HIGH | 7.5 | 1.1% | Dec 9, 2020 | An information disclosure vulnerability exists in RT-AC88U Download Master before 3.1.0.108. A direct access to /downloa... |
| CVE-2020-29655 | HIGH | 7.5 | 0.9% | Dec 9, 2020 | An injection vulnerability exists in RT-AC88U Download Master before 3.1.0.108. Accessing Main_Login.asp?flag=1&productn... |
| CVE-2020-29651 | HIGH | 7.5 | 4.6% | Dec 9, 2020 | A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be u... |
| CVE-2020-27349 | MEDIUM | 5.5 | 0.3% | Dec 9, 2020 | Aptdaemon performed policykit checks after interacting with potentially untrusted files with elevated privileges. This a... |
| CVE-2020-16128 | LOW | 3.8 | 0.3% | Dec 9, 2020 | The aptdaemon DBus interface disclosed file existence disclosure by setting Terminal/DebconfSocket properties, aka GHSL-... |
| CVE-2020-26970 | HIGH | 8.8 | 1.2% | Dec 9, 2020 | When reading SMTP server status codes, Thunderbird writes an integer value to a position on the stack that is intended t... |
| CVE-2020-26969 | HIGH | 8.8 | 1.2% | Dec 9, 2020 | Mozilla developers reported memory safety bugs present in Firefox 82. Some of these bugs showed evidence of memory corru... |
| CVE-2020-26968 | HIGH | 8.8 | 1.5% | Dec 9, 2020 | Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox ESR 78.4. Some of these bugs showed evi... |
| CVE-2020-26967 | MEDIUM | 6.5 | 0.8% | Dec 9, 2020 | When listening for page changes with a Mutation Observer, a malicious web page could confuse Firefox Screenshots into in... |
| CVE-2020-26966 | MEDIUM | 6.5 | 1.3% | Dec 9, 2020 | Searching for a single word from the address bar caused an mDNS request to be sent on the local network searching for a ... |
| CVE-2020-26965 | MEDIUM | 6.5 | 1.2% | Dec 9, 2020 | Some websites have a feature "Show Password" where clicking a button will change a password field into a textbook field,... |
| CVE-2020-26964 | MEDIUM | 6.8 | 0.9% | Dec 9, 2020 | If the Remote Debugging via USB feature was enabled in Firefox for Android on an Android version prior to Android 6.0, u... |
| CVE-2020-26963 | MEDIUM | 4.3 | 0.8% | Dec 9, 2020 | Repeated calls to the history and location interfaces could have been used to hang the browser. This was addressed by in... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now