2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-5798 | HIGH | 7.8 | 0.3% | Dec 7, 2020 | inSync Client installer for macOS versions v6.8.0 and prior could allow an attacker to gain privileges of a root user fr... |
| CVE-2020-28727 | MEDIUM | 6.1 | 0.9% | Dec 7, 2020 | Cross-site scripting (XSS) exists in SeedDMS 6.0.13 via the folderid parameter to views/bootstrap/class.DropFolderChoose... |
| CVE-2020-29573 | HIGH | 7.5 | 2.8% | Dec 6, 2020 | sysdeps/i386/ldbl2mpn.c in the GNU C Library (aka glibc or libc6) before 2.23 on x86 targets has a stack-based buffer ov... |
| CVE-2020-29572 | MEDIUM | 6.1 | 0.8% | Dec 6, 2020 | app/View/Elements/genericElements/SingleViews/Fields/genericField.ctp in MISP 2.4.135 has XSS via the authkey comment fi... |
| CVE-2020-28950 | HIGH | 7.8 | 0.5% | Dec 4, 2020 | The installer of Kaspersky Anti-Ransomware Tool (KART) prior to KART 4.0 Patch C was vulnerable to a DLL hijacking attac... |
| CVE-2020-27773 | LOW | 3.3 | 1.0% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/gem-private.h. An attacker who submits a crafted file that is processed by... |
| CVE-2020-27772 | LOW | 3.3 | 1.1% | Dec 4, 2020 | A flaw was found in ImageMagick in coders/bmp.c. An attacker who submits a crafted file that is processed by ImageMagick... |
| CVE-2020-27776 | LOW | 3.3 | 0.9% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I... |
| CVE-2020-27775 | LOW | 3.3 | 1.1% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by Ima... |
| CVE-2020-27774 | LOW | 3.3 | 1.1% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I... |
| CVE-2020-25449 | MEDIUM | 4.8 | 1.1% | Dec 4, 2020 | Cross Site Scripting (XSS) vulnerability in Arachnys Cabot 0.11.12 can be exploited via the Address column. |
| CVE-2020-25465 | HIGH | 7.5 | 1.6% | Dec 4, 2020 | Null Pointer Dereference. in xObjectBindingFromExpression at moddable/xs/sources/xsSyntaxical.c:3419 in Moddable SDK bef... |
| CVE-2020-25464 | HIGH | 7.5 | 1.1% | Dec 4, 2020 | Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is onl... |
| CVE-2020-25463 | HIGH | 7.5 | 1.3% | Dec 4, 2020 | Invalid Memory Access in fxUTF8Decode at moddable/xs/sources/xsCommon.c:916 in Moddable SDK before OS200908 causes a den... |
| CVE-2020-25462 | CRITICAL | 9.8 | 1.9% | Dec 4, 2020 | Heap buffer overflow in the fxCheckArrowFunction function at moddable/xs/sources/xsSyntaxical.c:3562 in Moddable SDK bef... |
| CVE-2020-25461 | HIGH | 7.5 | 1.3% | Dec 4, 2020 | Invalid Memory Access in the fxProxyGetter function in moddable/xs/sources/xsProxy.c in Moddable SDK before OS200908 cau... |
| CVE-2020-27409 | MEDIUM | 6.1 | 1.0% | Dec 4, 2020 | OpenSIS Community Edition before 7.5 is affected by a cross-site scripting (XSS) vulnerability in SideForStudent.php via... |
| CVE-2020-27408 | HIGH | 7.5 | 1.7% | Dec 4, 2020 | OpenSIS Community Edition through 7.6 is affected by incorrect access controls for the file ResetUserInfo.php that allow... |
| CVE-2020-27771 | LOW | 3.3 | 1.2% | Dec 4, 2020 | In RestoreMSCWarning() of /coders/pdf.c there are several areas where calls to GetPixelIndex() could result in values ou... |
| CVE-2020-27770 | MEDIUM | 5.5 | 1.1% | Dec 4, 2020 | Due to a missing check for 0 value of `replace_extent`, it is possible for offset `p` to overflow in SubstituteString(),... |
| CVE-2020-27767 | LOW | 3.3 | 1.1% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by Ima... |
| CVE-2020-27766 | HIGH | 7.8 | 1.2% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/statistic.c. An attacker who submits a crafted file that is processed by I... |
| CVE-2020-27765 | LOW | 3.3 | 1.0% | Dec 4, 2020 | A flaw was found in ImageMagick in MagickCore/segment.c. An attacker who submits a crafted file that is processed by Ima... |
| CVE-2020-5675 | HIGH | 7.5 | 2.8% | Dec 4, 2020 | Out-of-bounds read vulnerability in GT21 model of GOT2000 series (GT2107-WTBD V01.39.000 and earlier, GT2107-WTSD V01.39... |
| CVE-2020-29565 | MEDIUM | 6.1 | 1.4% | Dec 4, 2020 | An issue was discovered in OpenStack Horizon before 15.3.2, 16.x before 16.2.1, 17.x and 18.x before 18.3.3, 18.4.x, and... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now