2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-28583MEDIUM5.3An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo...
CVE-2020-28582MEDIUM5.3An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo...
CVE-2020-28577MEDIUM5.3An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo...
CVE-2020-28576MEDIUM5.3An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo...
CVE-2020-28575MEDIUM6.7A heap-based buffer overflow privilege escalation vulnerability in Trend Micro ServerProtect for Linux 3.0 may allow an ...
CVE-2020-28573MEDIUM5.3An improper access control information disclosure vulnerability in Trend Micro Apex One and OfficeScan XG SP1 could allo...
CVE-2020-8539HIGH7.8Kia Motors Head Unit with Software version: SOP.003.30.18.0703, SOP.005.7.181019, and SOP.007.1.191209 may allow an atta...
CVE-2020-29315MEDIUM5.4ThinkAdmin version v1 v6 has a stored XSS vulnerability which allows remote attackers to inject an arbitrary web script ...
CVE-2020-11990LOW3.3We have resolved a security issue in the camera plugin that could have affected certain Cordova (Android) applications. ...
CVE-2020-6880CRITICAL9.8A ZXELINK wireless controller has a SQL injection vulnerability. A remote attacker does not need to log in. By sending m...
CVE-2020-28993HIGH7.5A Directory Traversal vulnerability exists in ATX miniCMTS200a Broadband Gateway through 2.0 and Pico CMTS through 2.0. ...
CVE-2020-28971CRITICAL9.8An issue was discovered on Western Digital My Cloud OS 5 devices before 5.06.115. A NAS Admin authentication bypass vuln...
CVE-2020-28970CRITICAL9.8An issue was discovered on Western Digital My Cloud OS 5 devices before 5.06.115. A NAS Admin authentication bypass vuln...
CVE-2020-28940CRITICAL9.8On Western Digital My Cloud OS 5 devices before 5.06.115, the NAS Admin dashboard has an authentication bypass vulnerabi...
CVE-2020-7548CRITICAL9.8A CWE-330 - Use of Insufficiently Random Values vulnerability exists in Smartlink, PowerTag, and Wiser Series Gateways (...
CVE-2020-7547HIGH8.8A CWE-284: Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA So...
CVE-2020-7546MEDIUM5.4A CWE-79: Improper Neutralization of Input During Web Page Generation vulnerability exists in EcoStruxureª and SmartStru...
CVE-2020-7545HIGH7.2A CWE-284:Improper Access Control vulnerability exists in EcoStruxureª and SmartStruxureª Power Monitoring and SCADA Sof...
CVE-2020-7533CRITICAL9.8CWE-287: Improper Authentication vulnerability exists which could cause the execution of commands on the webserver witho...
CVE-2020-26762CRITICAL9.8A stack-based buffer-overflow exists in Edimax IP-Camera IC-3116W (v3.06) and IC-3140W (v3.07), which allows an unauthen...
CVE-2020-25181HIGH8.8WECON PLC Editor Versions 1.3.8 and prior has a heap-based buffer overflow vulnerabilities have been identified that may...
CVE-2020-25177HIGH8.8WECON PLC Editor Versions 1.3.8 and prior has a stack-based buffer overflow vulnerability has been identified that may a...
CVE-2020-4128MEDIUM5.3HCL Domino is susceptible to a lockout policy bypass vulnerability in the ID Vault service. An unauthenticated attacker ...
CVE-2020-7335HIGH7.8Privilege Escalation vulnerability in Microsoft Windows client McAfee Total Protection (MTP) prior to 16.0.29 allows loc...
CVE-2020-15257MEDIUM5.2containerd is an industry-standard container runtime and is available as a daemon for Linux and Windows. In containerd b...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now