2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-8583HIGH7.5Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could a...
CVE-2020-8582MEDIUM6.5Element Software versions prior to 12.2 and HCI versions prior to 1.8P1 are susceptible to a vulnerability which could a...
CVE-2020-6019HIGH7.5Valve's Game Networking Sockets prior to version v1.2.0 improperly handles inlined statistics messages in function CConn...
CVE-2020-26222HIGH8.8Dependabot is a set of packages for automated dependency management for Ruby, JavaScript, Python, PHP, Elixir, Rust, Jav...
CVE-2020-25557HIGH8.8In CMSuno 1.6.2, an attacker can inject malicious PHP code as a "username" while changing his/her username & password. A...
CVE-2020-25538HIGH8.8An authenticated attacker can inject malicious code into "lang" parameter in /uno/central.php file in CMSuno 1.6.2 and r...
CVE-2020-25165HIGH7.5BD Alaris PC Unit, Model 8015, Versions 9.33.1 and earlier and BD Alaris Systems Manager, Versions 4.33 and earlier The ...
CVE-2020-25155HIGH7.5The affected product transmits unencrypted sensitive information, which may allow an attacker to access this information...
CVE-2020-25151HIGH7.5The affected product does not properly validate input, which may allow an attacker to execute a denial-of-service attack...
CVE-2020-21667HIGH7.2In fastadmin-tp6 v1.0, in the file app/admin/controller/Ajax.php the 'table' parameter passed is not filtered so a malic...
CVE-2020-9129MEDIUM6.7HUAWEI Mate 30 versions earlier than 10.1.0.159(C00E159R7P2) have a vulnerability of improper buffer operation. Due to i...
CVE-2020-9127MEDIUM6.7Some Huawei products have a command injection vulnerability. Due to insufficient input validation, an attacker with high...
CVE-2020-6156HIGH7.8A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f...
CVE-2020-6155HIGH7.8A heap overflow vulnerability exists in the Pixar OpenUSD 20.05 while parsing compressed value rep arrays in binary USD ...
CVE-2020-6150HIGH7.8A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software USDC file format SPECS section decompressi...
CVE-2020-6149HIGH7.8A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f...
CVE-2020-6148HIGH7.8A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f...
CVE-2020-6147HIGH7.8A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD f...
CVE-2020-4886LOW3.3IBM InfoSphere Information Server 11.7 stores sensitive information in the browser's history that could be obtained by a...
CVE-2020-26825MEDIUM6.1SAP Fiori Launchpad (News tile Application), versions - 750,751,752,753,754,755, allows an unauthorized attacker to use ...
CVE-2020-1847HIGH7.5There is a denial of service vulnerability in some Huawei products. There is no protection against the attack scenario o...
CVE-2020-7032MEDIUM6.5An XML external entity (XXE) vulnerability in Avaya WebLM admin interface allows authenticated users to read arbitrary f...
CVE-2020-7033MEDIUM5.4A Cross Site Scripting (XSS) Vulnerability on the Unified Portal Client (web client) used in Avaya Equinox Conferencing ...
CVE-2020-27193MEDIUM6.1A cross-site scripting (XSS) vulnerability in the Color Dialog plugin for CKEditor 4.15.0 allows remote attackers to run...
CVE-2020-24719CRITICAL9.8Exposed Erlang Cookie could lead to Remote Command Execution (RCE) attack. Communication between Erlang nodes is done by...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now