2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-4629LOW3.3IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local user with specialized access to obtain sensi...
CVE-2020-15731LOW3.6An improper Input Validation vulnerability in the code handling file renaming and recovery in Bitdefender Engines allows...
CVE-2020-5132MEDIUM5.3SonicWall SSL-VPN products and SonicWall firewall SSL-VPN feature misconfiguration leads to possible DNS flaw known as d...
CVE-2020-15216MEDIUM6.5In goxmldsig (XML Digital Signatures implemented in pure Go) before version 1.1.0, with a carefully crafted XML file, an...
CVE-2020-4607HIGH7.8IBM Security Secret Server (IBM Security Verify Privilege Vault Remote 1.2 ) could allow a local user to bypass security...
CVE-2020-25775MEDIUM6.3The Trend Micro Security 2020 (v16) consumer family of products is vulnerable to a security race condition arbitrary fil...
CVE-2020-25774MEDIUM4.3A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to trigger an out-of-b...
CVE-2020-25773HIGH7.8A vulnerability in the Trend Micro Apex One ServerMigrationTool component could allow an attacker to execute arbitrary c...
CVE-2020-25772MEDIUM5.5An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl...
CVE-2020-25771MEDIUM5.5An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl...
CVE-2020-25770MEDIUM5.5An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl...
CVE-2020-24565MEDIUM5.5An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl...
CVE-2020-24564MEDIUM5.5An out-of-bounds read information disclosure vulnerabilities in Trend Micro Apex One may allow a local attacker to discl...
CVE-2020-24563HIGH7.8A vulnerability in Trend Micro Apex One may allow a local attacker to manipulate the process of the security agent unloa...
CVE-2020-24562HIGH7.8A vulnerability in Trend Micro OfficeScan XG SP1 on Microsoft Windows may allow an attacker to create a hard link to any...
CVE-2020-26121HIGH7.5An issue was discovered in the FileImporter extension for MediaWiki before 1.34.4. An attacker can import a file even wh...
CVE-2020-26120MEDIUM6.1XSS exists in the MobileFrontend extension for MediaWiki before 1.34.4 because section.line is mishandled during regex s...
CVE-2020-25869HIGH7.5An information leak was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. Handling of acto...
CVE-2020-25828MEDIUM6.1An issue was discovered in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. The non-jqueryMsg version o...
CVE-2020-25827HIGH7.5An issue was discovered in the OATHAuth extension in MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4. F...
CVE-2020-25815MEDIUM6.1An issue was discovered in MediaWiki 1.32.x through 1.34.x before 1.34.4. LogEventList::getFiltersDesc is insecurely usi...
CVE-2020-25814MEDIUM6.1In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, XSS related to jQuery can occur. The attacker creat...
CVE-2020-25813MEDIUM5.3In MediaWiki before 1.31.10 and 1.32.x through 1.34.x before 1.34.4, Special:UserRights exposes the existence of hidden ...
CVE-2020-25812MEDIUM6.1An issue was discovered in MediaWiki 1.34.x before 1.34.4. On Special:Contributions, the NS filter uses unescaped messag...
CVE-2020-26117HIGH8.1In rfb/CSecurityTLS.cxx and rfb/CSecurityTLS.java in TigerVNC before 1.11.0, viewers mishandle TLS certificate exception...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now