2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-2519 | MEDIUM | 4.3 | 1.2% | Jan 15, 2020 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions... |
| CVE-2020-2515 | MEDIUM | 5 | 0.8% | Jan 15, 2020 | Vulnerability in the Database Gateway for ODBC component of Oracle Database Server. Supported versions that are affected... |
| CVE-2020-2512 | MEDIUM | 5.9 | 1.5% | Jan 15, 2020 | Vulnerability in the Database Gateway for ODBC component of Oracle Database Server. Supported versions that are affected... |
| CVE-2020-2096 | MEDIUM | 6.1 | 89.4% | Jan 15, 2020 | Jenkins Gitlab Hook Plugin 1.4.2 and earlier does not escape project names in the build_now endpoint, resulting in a ref... |
| CVE-2020-2095 | MEDIUM | 4.3 | 0.9% | Jan 15, 2020 | Jenkins Redgate SQL Change Automation Plugin 2.0.4 and earlier stored an API key unencrypted in job config.xml files on ... |
| CVE-2020-2094 | MEDIUM | 4.3 | 0.8% | Jan 15, 2020 | A missing permission check in Jenkins Health Advisor by CloudBees Plugin 3.0 and earlier allows attackers with Overall/R... |
| CVE-2020-1611 | MEDIUM | 6.5 | 1.7% | Jan 15, 2020 | A Local File Inclusion vulnerability in Juniper Networks Junos Space allows an attacker to view all files on the target ... |
| CVE-2020-1607 | MEDIUM | 6.1 | 0.9% | Jan 15, 2020 | Insufficient Cross-Site Scripting (XSS) protection in J-Web may potentially allow a remote attacker to inject web script... |
| CVE-2020-1604 | MEDIUM | 5.3 | 0.8% | Jan 15, 2020 | On EX4300, EX4600, QFX3500, and QFX5100 Series, a vulnerability in the IP firewall filter component may cause the firewa... |
| CVE-2020-1600 | MEDIUM | 6.5 | 1.2% | Jan 15, 2020 | In a Point-to-Multipoint (P2MP) Label Switched Path (LSP) scenario, an uncontrolled resource consumption vulnerability i... |
| CVE-2020-5502 | MEDIUM | 6.5 | 0.4% | Jan 15, 2020 | phpBB 3.2.8 allows a CSRF attack that can approve pending group memberships. |
| CVE-2020-5501 | MEDIUM | 4.3 | 0.4% | Jan 15, 2020 | phpBB 3.2.8 allows a CSRF attack that can modify a group avatar. |
| CVE-2020-0656 | MEDIUM | 5.4 | 1.5% | Jan 14, 2020 | A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a speci... |
| CVE-2020-0647 | MEDIUM | 5.4 | 0.9% | Jan 14, 2020 | A spoofing vulnerability exists when Office Online does not validate origin in cross-origin communications correctly, ak... |
| CVE-2020-0643 | MEDIUM | 5.5 | 1.3% | Jan 14, 2020 | An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) handles... |
| CVE-2020-0639 | MEDIUM | 5.5 | 1.3% | Jan 14, 2020 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to prop... |
| CVE-2020-0637 | MEDIUM | 6.5 | 5.0% | Jan 14, 2020 | An information disclosure vulnerability exists when Remote Desktop Web Access improperly handles credential information,... |
| CVE-2020-0622 | MEDIUM | 5.5 | 1.3% | Jan 14, 2020 | An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects ... |
| CVE-2020-0621 | MEDIUM | 4.4 | 1.0% | Jan 14, 2020 | A security feature bypass vulnerability exists in Windows 10 when third party filters are called during a password updat... |
| CVE-2020-0617 | MEDIUM | 6 | 1.3% | Jan 14, 2020 | A denial of service vulnerability exists when Microsoft Hyper-V Virtual PCI on a host server fails to properly validate ... |
| CVE-2020-0616 | MEDIUM | 5.5 | 1.7% | Jan 14, 2020 | A denial of service vulnerability exists when Windows improperly handles hard links, aka 'Microsoft Windows Denial of Se... |
| CVE-2020-0615 | MEDIUM | 5.5 | 1.7% | Jan 14, 2020 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to prop... |
| CVE-2020-0608 | MEDIUM | 5.5 | 1.3% | Jan 14, 2020 | An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi... |
| CVE-2020-0607 | MEDIUM | 5.5 | 5.9% | Jan 14, 2020 | An information disclosure vulnerability exists in the way that Microsoft Graphics Components handle objects in memory, a... |
| CVE-2020-7057 | MEDIUM | 5.3 | 1.1% | Jan 14, 2020 | Hikvision DVR DS-7204HGHI-F1 V4.0.1 build 180903 Web Version sends a different response for failed ISAPI/Security/sessio... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now