2020 CVE Vulnerabilities
21,071 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-8262 | MEDIUM | 6.1 | 1.8% | Oct 28, 2020 | A vulnerability in the Pulse Connect Secure / Pulse Policy Secure below 9.1R9 could allow attackers to conduct Cross-Sit... |
| CVE-2020-8261 | MEDIUM | 4.3 | 2.1% | Oct 28, 2020 | A vulnerability in the Pulse Connect Secure / Pulse Policy Secure < 9.1R9 is vulnerable to arbitrary cookie injection. |
| CVE-2020-8260 | HIGH | 7.2 | 96.5% | Oct 28, 2020 | A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform... |
| CVE-2020-8255 | MEDIUM | 4.9 | 2.3% | Oct 28, 2020 | A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform... |
| CVE-2020-8254 | HIGH | 8.8 | 2.0% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client < 9.1R9 has Remote Code Execution (RCE) if users can be convinced to ... |
| CVE-2020-8250 | HIGH | 7.8 | 0.5% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege. |
| CVE-2020-8249 | HIGH | 7.8 | 0.5% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to perform buffer overflo... |
| CVE-2020-8248 | HIGH | 7.8 | 0.5% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client (Linux) < 9.1R9 could allow local attackers to escalate privilege. |
| CVE-2020-8241 | HIGH | 7.5 | 1.7% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client < 9.1R9 could allow the attacker to perform a MITM Attack if end user... |
| CVE-2020-8240 | HIGH | 7.8 | 0.3% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client < 9.1R9 allows a restricted user on an endpoint machine can use syste... |
| CVE-2020-8239 | CRITICAL | 9.8 | 2.0% | Oct 28, 2020 | A vulnerability in the Pulse Secure Desktop Client < 9.1R9 is vulnerable to the client registry privilege escalation att... |
| CVE-2020-6829 | MEDIUM | 5.3 | 1.5% | Oct 28, 2020 | When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial i... |
| CVE-2020-5145 | HIGH | 8.6 | 1.2% | Oct 28, 2020 | SonicWall Global VPN client version 4.10.4.0314 and earlier have an insecure library loading (DLL hijacking) vulnerabili... |
| CVE-2020-5144 | HIGH | 7.8 | 0.6% | Oct 28, 2020 | SonicWall Global VPN client version 4.10.4.0314 and earlier allows unprivileged windows user to elevate privileges to SY... |
| CVE-2020-27957 | MEDIUM | 5.4 | 0.6% | Oct 28, 2020 | The RandomGameUnit extension for MediaWiki through 1.35 was not properly escaping various title-related data. When certa... |
| CVE-2020-27956 | CRITICAL | 9.8 | 5.2% | Oct 28, 2020 | An Arbitrary File Upload in the Upload Image component in SourceCodester Car Rental Management System 1.0 allows the use... |
| CVE-2020-16140 | MEDIUM | 6.1 | 0.9% | Oct 27, 2020 | The search functionality of the Greenmart theme 2.4.2 for WordPress is vulnerable to XSS. |
| CVE-2020-9982 | MEDIUM | 5.5 | 0.8% | Oct 27, 2020 | This issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in Apple Music 3.4.0 ... |
| CVE-2020-9979 | MEDIUM | 5.5 | 0.4% | Oct 27, 2020 | A trust issue was addressed by removing a legacy API. This issue is fixed in iOS 14.0 and iPadOS 14.0, tvOS 14.0. An att... |
| CVE-2020-9973 | HIGH | 7.8 | 1.9% | Oct 27, 2020 | An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.7, Securi... |
| CVE-2020-9961 | HIGH | 7.8 | 1.5% | Oct 27, 2020 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.7, Secur... |
| CVE-2020-9941 | HIGH | 7.5 | 2.5% | Oct 27, 2020 | This issue was addressed with improved checks. This issue is fixed in macOS Catalina 10.15.7, Security Update 2020-005 H... |
| CVE-2020-9932 | HIGH | 8.8 | 1.1% | Oct 27, 2020 | A memory corruption issue was addressed with improved validation. This issue is fixed in Safari 13.0.1, iOS 13.1 and iPa... |
| CVE-2020-9866 | CRITICAL | 9.8 | 1.9% | Oct 27, 2020 | A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.6, Security U... |
| CVE-2020-9860 | MEDIUM | 5.4 | 1.0% | Oct 27, 2020 | A custom URL scheme handling issue was addressed with improved input validation. This issue is fixed in Safari 13.0.5. P... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now