2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-25633MEDIUM5.3A flaw was found in RESTEasy client in all versions of RESTEasy up to 4.5.6.Final. It may allow client users to obtain t...
CVE-2020-16230LOW2.3All version of Ewon Flexy and Cosy prior to 14.1 use wildcards such as (*) under which domains can request resources. An...
CVE-2020-7945MEDIUM5.5Local registry credentials were included directly in the CD4PE deployment definition, which could expose these credentia...
CVE-2020-3979HIGH7.8InstallBuilder for Qt Windows (versions prior to 20.7.0) installers look for plugins at a predictable location at initia...
CVE-2020-25766HIGH7.5An issue was discovered in MISP before 2.4.132. It can perform an unwanted action because of a POST operation on a form ...
CVE-2020-16247HIGH7.1Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, exposes a resource to the wrong control sphere, p...
CVE-2020-16200MEDIUM6.5Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, does not properly control the allocation and maint...
CVE-2020-16198MEDIUM6.3When an attacker claims to have a given identity, Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, ...
CVE-2020-15189HIGH7.2SOY CMS 3.0.2 and earlier is affected by Remote Code Execution (RCE) using Unrestricted File Upload. Cross-Site Scriptin...
CVE-2020-15181CRITICAL9.8The Alfresco Reset Password add-on before version 1.2.0 relies on untrusted inputs in a security decision. Intruders can...
CVE-2020-14525LOW3.5Philips Clinical Collaboration Platform, Versions 12.2.1 and prior, does not neutralize or incorrectly neutralizes user-...
CVE-2020-14506MEDIUM4.3Philips Clinical Collaboration Platform, Versions 12.2.1 and prior. The product receives input or data, but it does not ...
CVE-2020-14390MEDIUM5.6A flaw was found in the Linux kernel in versions before 5.9-rc6. When changing screen size, an out-of-bounds memory writ...
CVE-2020-14029HIGH7.5An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The RSS To SMS module processes XML files in an unsafe m...
CVE-2020-14021MEDIUM4.9An issue was discovered in Ozeki NG SMS Gateway through 4.17.6. The ASP.net SMS module can be used to read and validate ...
CVE-2020-24623MEDIUM6.5A potential security vulnerability has been identified in Hewlett Packard Enterprise Universal API Framework. The vulner...
CVE-2020-15188CRITICAL9.8SOY CMS 3.0.2.327 and earlier is affected by Unauthenticated Remote Code Execution (RCE). The allows remote attackers to...
CVE-2020-0405HIGH7.8In NetworkStackNotifier, there is a possible permissions bypass due to an unsafe implicit PendingIntent. This could lead...
CVE-2020-0365MEDIUM5.5In netd, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of servi...
CVE-2020-0350MEDIUM6.7In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2020-0349MEDIUM4.4In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to local information discl...
CVE-2020-0348MEDIUM4.9In NFC, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disc...
CVE-2020-0347MEDIUM6.7In iptables, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalati...
CVE-2020-0335MEDIUM6.7In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...
CVE-2020-0334MEDIUM6.7In NFC, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of pr...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now