2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-19497 | HIGH | 8.8 | 1.4% | Jul 21, 2021 | Integer overflow vulnerability in Mat_VarReadNextInfo5 in mat5.c in tbeu matio (aka MAT File I/O Library) 1.5.17, allows... |
| CVE-2020-19492 | HIGH | 7.8 | 1.0% | Jul 21, 2021 | There is a floating point exception in ReadImage that leads to a Segmentation fault in sam2p 0.49.4. A crafted input wil... |
| CVE-2020-19491 | HIGH | 7.8 | 1.0% | Jul 21, 2021 | There is an invalid memory access bug in cgif.c that leads to a Segmentation fault in sam2p 0.49.4. A crafted input will... |
| CVE-2020-23283 | HIGH | 7.5 | 1.4% | Jul 21, 2021 | Information disclosure in Logon Page in MV's mConnect application v02.001.00 allows an attacker to know valid users from... |
| CVE-2020-23282 | HIGH | 7.5 | 1.3% | Jul 21, 2021 | SQL injection in Logon Page in MV's mConnect application, v02.001.00, allows an attacker to use a non existing user with... |
| CVE-2020-21934 | HIGH | 7.5 | 1.6% | Jul 21, 2021 | An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where authentication to download the S... |
| CVE-2020-21933 | HIGH | 7.5 | 1.5% | Jul 21, 2021 | An issue was discovered in Motorola CX2 router CX 1.0.2 Build 20190508 Rel.97360n where the admin password and private k... |
| CVE-2020-23284 | HIGH | 7.5 | 1.0% | Jul 20, 2021 | Information disclosure in aspx pages in MV's IDCE application v1.0 allows an attacker to copy and paste aspx pages in th... |
| CVE-2020-25206 | HIGH | 7.2 | 5.3% | Jul 20, 2021 | The web console for Mimosa B5, B5c, and C5x firmware through 2.8.0.2 allows authenticated command injection in the Throu... |
| CVE-2020-15660 | HIGH | 8.8 | 1.1% | Jul 20, 2021 | Missing checks on Content-Type headers in geckodriver before 0.27.0 could lead to a CSRF vulnerability, that might, when... |
| CVE-2020-36430 | HIGH | 7.8 | 1.1% | Jul 20, 2021 | libass 0.15.x before 0.15.1 has a heap-based buffer overflow in decode_chars (called from decode_font and process_text) ... |
| CVE-2020-36428 | HIGH | 8.8 | 1.4% | Jul 20, 2021 | matio (aka MAT File I/O Library) 1.5.18 through 1.5.21 has a heap-based buffer overflow in ReadInt32DataDouble (called f... |
| CVE-2020-5323 | HIGH | 8.1 | 1.0% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5321 | HIGH | 7.6 | 0.9% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5320 | HIGH | 7.2 | 0.9% | Jul 19, 2021 | Dell EMC OpenManage Enterprise (OME) versions prior to 3.2 and OpenManage Enterprise-Modular (OME-M) versions prior to 1... |
| CVE-2020-5315 | HIGH | 8.8 | 0.2% | Jul 19, 2021 | Dell EMC Repository Manager (DRM) version 3.2 contains a plain-text password storage vulnerability. Proxy server user pa... |
| CVE-2020-22741 | HIGH | 7.5 | 0.8% | Jul 19, 2021 | An issue was discovered in Xuperchain 3.6.0 that allows for attackers to recover any arbitrary users' private key after ... |
| CVE-2020-36426 | HIGH | 7.5 | 1.7% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.24.0. mbedtls_x509_crl_parse_der has a buffer over-read (of one byte). |
| CVE-2020-36423 | HIGH | 7.5 | 1.2% | Jul 19, 2021 | An issue was discovered in Arm Mbed TLS before 2.23.0. A remote attacker can recover plaintext because a certain Lucky 1... |
| CVE-2020-22650 | HIGH | 7.5 | 1.1% | Jul 19, 2021 | A memory leak vulnerability in sim-organizer.c of AlienVault Ossim v5 causes a denial of service (DOS) via a system cras... |
| CVE-2020-11634 | HIGH | 7.8 | 0.5% | Jul 15, 2021 | The Zscaler Client Connector for Windows prior to 2.1.2.105 had a DLL hijacking vulnerability caused due to the configur... |
| CVE-2020-11632 | HIGH | 7.8 | 0.3% | Jul 15, 2021 | The Zscaler Client Connector prior to 2.1.2.150 did not quote the search path for services, which allows a local adversa... |
| CVE-2020-12734 | HIGH | 8.1 | 0.9% | Jul 15, 2021 | DEPSTECH WiFi Digital Microscope 3 allows remote attackers to change the SSID and password, and demand a ransom payment ... |
| CVE-2020-12733 | HIGH | 7.5 | 1.3% | Jul 15, 2021 | Certain Shenzhen PENGLIXIN components on DEPSTECH WiFi Digital Microscope 3, as used by Shekar Endoscope, allow a TELNET... |
| CVE-2020-25736 | HIGH | 7.8 | 2.2% | Jul 15, 2021 | Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now