2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-28583 | MEDIUM | 5.3 | 3.2% | Dec 1, 2020 | An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo... |
| CVE-2020-28582 | MEDIUM | 5.3 | 3.2% | Dec 1, 2020 | An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo... |
| CVE-2020-28577 | MEDIUM | 5.3 | 3.2% | Dec 1, 2020 | An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo... |
| CVE-2020-28576 | MEDIUM | 5.3 | 3.2% | Dec 1, 2020 | An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo... |
| CVE-2020-28575 | MEDIUM | 6.7 | 0.7% | Dec 1, 2020 | A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an ... |
| CVE-2020-28573 | MEDIUM | 5.3 | 3.2% | Dec 1, 2020 | An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo... |
| CVE-2020-8539 | HIGH | 7.8 | 2.3% | Dec 1, 2020 | Kia Motors Head Unit with Software version: SOP.003.30.18.0703, SOP.005.7.181019, and SOP.007.1.191209 may allow an atta... |
| CVE-2020-29315 | MEDIUM | 5.4 | 1.0% | Dec 1, 2020 | ThinkAdmin version v1 v6 has a stored XSS vulnerability which allows remote attackers to inject an arbitrary web script ... |
| CVE-2020-11990 | LOW | 3.3 | 0.7% | Dec 1, 2020 | We have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. ... |
| CVE-2020-6880 | CRITICAL | 9.8 | 1.2% | Dec 1, 2020 | A ZXELINK wireless controller has a SQL injection vulnerability. A remote attacker does not need to log in. By sending m... |
| CVE-2020-28993 | HIGH | 7.5 | 2.8% | Dec 1, 2020 | A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. ... |
| CVE-2020-28971 | CRITICAL | 9.8 | 3.8% | Dec 1, 2020 | An issue was discovered on Western Digital My Cloud OS 5 devices before 5.06.115. A NAS Admin authentication bypass vuln... |
| CVE-2020-28970 | CRITICAL | 9.8 | 3.9% | Dec 1, 2020 | An issue was discovered on Western Digital My Cloud OS 5 devices before 5.06.115. A NAS Admin authentication bypass vuln... |
| CVE-2020-28940 | CRITICAL | 9.8 | 3.9% | Dec 1, 2020 | On Western Digital My Cloud OS 5 devices before 5.06.115, the NAS Admin dashboard has an authentication bypass vulnerabi... |
| CVE-2020-7548 | CRITICAL | 9.8 | 1.4% | Dec 1, 2020 | A CWE-330 - Use of Insufficiently Random Values vulnerability exists in Smartlink, PowerTag, and Wiser Series Gateways (... |
| CVE-2020-7547 | HIGH | 8.8 | 1.3% | Dec 1, 2020 | A CWE-284: Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA So... |
| CVE-2020-7546 | MEDIUM | 5.4 | 0.6% | Dec 1, 2020 | A CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability exists in EcoStruxureª and SmartStru... |
| CVE-2020-7545 | HIGH | 7.2 | 2.0% | Dec 1, 2020 | A CWE-284:Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Sof... |
| CVE-2020-7533 | CRITICAL | 9.8 | 2.3% | Dec 1, 2020 | CWE-287: Improper Authentication vulnerability exists which could cause the execution of commands on the webserver witho... |
| CVE-2020-26762 | CRITICAL | 9.8 | 2.2% | Dec 1, 2020 | A stack-based buffer-overflow exists in Edimax IP-Camera IC-3116W (v3.06) and IC-3140W (v3.07), which allows an unauthen... |
| CVE-2020-25181 | HIGH | 8.8 | 2.0% | Dec 1, 2020 | WECON PLC Editor Versions 1.3.8 and prior has a heap-based buffer overflow vulnerabilities have been identified that may... |
| CVE-2020-25177 | HIGH | 8.8 | 1.7% | Dec 1, 2020 | WECON PLC Editor Versions 1.3.8 and prior has a stack-based buffer overflow vulnerability has been identified that may a... |
| CVE-2020-4128 | MEDIUM | 5.3 | 0.9% | Dec 1, 2020 | HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service. An unauthenticated attacker ... |
| CVE-2020-7335 | HIGH | 7.8 | 0.4% | Dec 1, 2020 | Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior to 16.0.29 allows loc... |
| CVE-2020-15257 | MEDIUM | 5.2 | 3.2% | Dec 1, 2020 | containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd b... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now