2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-16986MEDIUM6.2Azure Sphere Denial of Service Vulnerability
CVE-2020-16985MEDIUM6.2Azure Sphere Information Disclosure Vulnerability
CVE-2020-16984HIGH7.3Azure Sphere Unsigned Code Execution Vulnerability
CVE-2020-16983MEDIUM5.7Azure Sphere Tampering Vulnerability
CVE-2020-16982MEDIUM6.1Azure Sphere Unsigned Code Execution Vulnerability
CVE-2020-16981MEDIUM6.1Azure Sphere Elevation of Privilege Vulnerability
CVE-2020-16979MEDIUM5.3Microsoft SharePoint Information Disclosure Vulnerability
CVE-2020-16970HIGH8.1Azure Sphere Unsigned Code Execution Vulnerability
CVE-2020-16127MEDIUM5.5An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, ...
CVE-2020-16126LOW3.3An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, ...
CVE-2020-25268HIGH8.8Remote Code Execution can occur via the external news feed in ILIAS 6.4 because of incorrect parameter sanitization for ...
CVE-2020-25267MEDIUM5.4An XSS issue exists in the question-pool file-upload preview feature in ILIAS 6.4.
CVE-2020-28409MEDIUM5.4The server in Dundas BI through 8.0.0.1001 allows XSS via addition of a Component (e.g., a button) when events such as c...
CVE-2020-28408MEDIUM5.4The server in Dundas BI through 8.0.0.1001 allows XSS via an HTML label when creating or editing a dashboard.
CVE-2020-24367HIGH7.8Incorrect file permissions in BlueStacks 4 through 4.230 on Windows allow a local attacker to escalate privileges by mod...
CVE-2020-24063HIGH7.2The Canto plugin 1.3.0 for WordPress allows includes/lib/download.php?subdomain= SSRF.
CVE-2020-23968HIGH7.8Ilex International Sign&go Workstation Security Suite 7.1 allows elevation of privileges via a symlink attack on Program...
CVE-2020-28368MEDIUM4.4Xen through 4.14.x allows guest OS administrators to obtain sensitive information (such as AES keys from outside the gue...
CVE-2020-27165Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-28050. Reason: This candidate is a reservation d...
CVE-2020-28055HIGH7.8A vulnerability in the TCL Android Smart TV series V8-R851T02-LF1 V295 and below and V8-T658T01-LF1 V373 and below by TC...
CVE-2020-27403MEDIUM6.5A vulnerability in the TCL Android Smart TV series V8-R851T02-LF1 V295 and below and V8-T658T01-LF1 V373 and below by TC...
CVE-2020-27146HIGH8.8The Core component of TIBCO Software Inc.'s TIBCO iProcess Workspace (Browser) contains a vulnerability that theoretical...
CVE-2020-6316MEDIUM4.3SAP ERP and SAP S/4 HANA allows an authenticated user to see cost records to objects to which he has no authorization in...
CVE-2020-26824CRITICAL10SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because o...
CVE-2020-26823CRITICAL10SAP Solution Manager (JAVA stack), version - 7.20, allows an unauthenticated attacker to compromise the system because o...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now