2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9106 | MEDIUM | 4.6 | 0.3% | Oct 12, 2020 | HUAWEI P30 Pro versions earlier than 10.1.0.160(C00E160R2P8) have a path traversal vulnerability. The system does not su... |
| CVE-2020-9091 | MEDIUM | 5.5 | 0.2% | Oct 12, 2020 | Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have an out-of-bounds read and write vulnerability. Some func... |
| CVE-2020-9090 | HIGH | 7.8 | 0.2% | Oct 12, 2020 | FusionAccess version 6.5.1 has an improper authorization vulnerability. A command is authorized with incorrect privilege... |
| CVE-2020-9087 | MEDIUM | 5.5 | 0.2% | Oct 12, 2020 | Taurus-AL00A version 10.0.0.1(C00E1R1P1) has an out-of-bounds read vulnerability in XFRM module. An authenticated, local... |
| CVE-2020-7811 | HIGH | 7.8 | 0.7% | Oct 12, 2020 | Samsung Update 3.0.2.0 ~ 3.0.32.0 has a vulnerability that allows privilege escalation as commands crafted by attacker a... |
| CVE-2020-4741 | MEDIUM | 5.4 | 0.6% | Oct 12, 2020 | IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to stored cross-site scripting. This vulnerability allows ... |
| CVE-2020-4740 | MEDIUM | 5.2 | 0.7% | Oct 12, 2020 | IBM InfoSphere Information Server 11.5 and 11.7 is vulnerable to HTML injection. A remote attacker could inject maliciou... |
| CVE-2020-4689 | MEDIUM | 6.8 | 2.3% | Oct 12, 2020 | IBM Security Guardium 11.2 is vulnerable to CVS Injection. A remote privileged attacker could execute arbitrary commands... |
| CVE-2020-4681 | MEDIUM | 5.4 | 0.6% | Oct 12, 2020 | IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2020-4680 | MEDIUM | 5.4 | 0.6% | Oct 12, 2020 | IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2020-4679 | MEDIUM | 4.8 | 0.5% | Oct 12, 2020 | IBM Security Guardium 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary Jav... |
| CVE-2020-4678 | MEDIUM | 4.9 | 1.2% | Oct 12, 2020 | IBM Security Guardium 11.2 could allow an attacker with admin access to obtain and read files that they normally would n... |
| CVE-2020-4388 | HIGH | 8.2 | 1.2% | Oct 12, 2020 | IBM Cognos Analytics 11.0 and 11.1 could be vulnerable to a denial of service attack by failing to catch exceptions in a... |
| CVE-2020-4302 | HIGH | 7.8 | 1.7% | Oct 12, 2020 | IBM Cognos Analytics 11.0 and 11.1 could allow a remote attacker to execute arbitrary code on the system, caused by a CS... |
| CVE-2020-26869 | HIGH | 7.5 | 1.7% | Oct 12, 2020 | ARC Informatique PcVue prior to version 12.0.17 is vulnerable to information exposure, allowing unauthorized users to ac... |
| CVE-2020-26868 | HIGH | 7.5 | 2.1% | Oct 12, 2020 | ARC Informatique PcVue prior to version 12.0.17 is vulnerable to a denial-of-service attack due to the ability of an una... |
| CVE-2020-26867 | CRITICAL | 9.8 | 3.7% | Oct 12, 2020 | ARC Informatique PcVue prior to version 12.0.17 is vulnerable due to the deserialization of untrusted data, which may al... |
| CVE-2020-13943 | MEDIUM | 4.3 | 57.3% | Oct 12, 2020 | If an HTTP/2 client connecting to Apache Tomcat 10.0.0-M1 to 10.0.0-M7, 9.0.0.M1 to 9.0.37 or 8.5.0 to 8.5.57 exceeded t... |
| CVE-2020-13341 | MEDIUM | 4.9 | 1.2% | Oct 12, 2020 | An issue has been discovered in GitLab affecting all versions prior to 13.2.10, 13.3.7 and 13.4.2. Insufficient permissi... |
| CVE-2020-4781 | MEDIUM | 6.5 | 1.4% | Oct 12, 2020 | An improper input validation before calling java readLine() method may impact IBM Curam Social Program Management 7.0.9 ... |
| CVE-2020-4780 | MEDIUM | 5.3 | 1.0% | Oct 12, 2020 | OOTB build scripts does not set the secure attribute on session cookie which may impact IBM Curam Social Program Managem... |
| CVE-2020-4779 | HIGH | 8.1 | 1.1% | Oct 12, 2020 | A HTTP Verb Tampering vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. By sending a specia... |
| CVE-2020-4778 | HIGH | 7.5 | 0.8% | Oct 12, 2020 | IBM Curam Social Program Management 7.0.9 and 7.0.10 uses MD5 algorithm for hashing token in a single instance which les... |
| CVE-2020-4776 | HIGH | 7.5 | 2.0% | Oct 12, 2020 | A path traversal vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10, which could allow a remo... |
| CVE-2020-4775 | MEDIUM | 5.4 | 0.6% | Oct 12, 2020 | A cross-site scripting (XSS) vulnerability may impact IBM Curam Social Program Management 7.0.9 and 7.0.10. This vulnera... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now