2020 CVE Vulnerabilities

21,071 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-14746MEDIUM4.7Vulnerability in the Oracle Applications Framework product of Oracle E-Business Suite (component: Popup windows). Suppor...
CVE-2020-14745MEDIUM4.3Vulnerability in the Oracle REST Data Services product of Oracle REST Data Services (component: General). Supported vers...
CVE-2020-14744MEDIUM6.5Vulnerability in the Oracle REST Data Services product of Oracle REST Data Services (component: General). Supported vers...
CVE-2020-14743LOW3.1Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12....
CVE-2020-14742LOW2.7Vulnerability in the Core RDBMS component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, ...
CVE-2020-14741MEDIUM4.9Vulnerability in the Database Filesystem component of Oracle Database Server. Supported versions that are affected are 1...
CVE-2020-14740LOW2.8Vulnerability in the SQL Developer Install component of Oracle Database Server. Supported versions that are affected are...
CVE-2020-14736LOW3.8Vulnerability in the Database Vault component of Oracle Database Server. Supported versions that are affected are 11.2.0...
CVE-2020-14735HIGH8.8Vulnerability in the Scheduler component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 1...
CVE-2020-14734HIGH8.1Vulnerability in the Oracle Text component of Oracle Database Server. Supported versions that are affected are 11.2.0.4,...
CVE-2020-14732LOW3.1Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications...
CVE-2020-14731LOW3.1Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications...
CVE-2020-14672MEDIUM4.9Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Stored Procedure). Supported versions that...
CVE-2020-6648MEDIUM6.5A cleartext storage of sensitive information vulnerability in FortiOS command line interface in versions 6.2.4 and earli...
CVE-2020-10140HIGH7.3Acronis True Image 2021 fails to properly set ACLs of the C:\ProgramData\Acronis directory. Because some privileged proc...
CVE-2020-10139HIGH7.8Acronis True Image 2021 includes an OpenSSL component that specifies an OPENSSLDIR variable as a subdirectory within C:\...
CVE-2020-10138HIGH7.8Acronis Cyber Backup 12.5 and Cyber Protect 15 include an OpenSSL component that specifies an OPENSSLDIR variable as a s...
CVE-2020-25820MEDIUM6.5BigBlueButton before 2.2.7 allows remote authenticated users to read local files and conduct SSRF attacks via an uploade...
CVE-2020-26896HIGH8.2Prior to 0.11.0-beta, LND (Lightning Network Daemon) had a vulnerability in its invoice database. While claiming on-chai...
CVE-2020-26895MEDIUM5.3Prior to 0.10.0-beta, LND (Lightning Network Daemon) would have accepted a counterparty high-S signature and broadcast t...
CVE-2020-5792HIGH7.2Improper neutralization of argument delimiters in a command in Nagios XI 5.7.3 allows a remote, authenticated admin user...
CVE-2020-5791HIGH7.2Improper neutralization of special elements used in an OS command in Nagios XI 5.7.3 allows a remote, authenticated admi...
CVE-2020-5790MEDIUM6.5Cross-site request forgery in Nagios XI 5.7.3 allows a remote attacker to perform sensitive application actions by trick...
CVE-2020-25648HIGH7.5A flaw was found in the way NSS handled CCS (ChangeCipherSpec) messages in TLS 1.3. This flaw allows a remote attacker t...
CVE-2020-25157HIGH7.5The R-SeeNet webpage (1.5.1 through 2.4.10) suffers from SQL injection, which allows a remote attacker to invoke queries...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now