2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7315 | MEDIUM | 6.7 | 0.5% | Sep 10, 2020 | DLL Injection Vulnerability in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users to execute arbitrary code... |
| CVE-2020-7314 | HIGH | 7.8 | 0.4% | Sep 10, 2020 | Privilege Escalation Vulnerability in the installer in McAfee Data Exchange Layer (DXL) Client for Mac shipped with McAf... |
| CVE-2020-7312 | HIGH | 7.8 | 0.3% | Sep 10, 2020 | DLL Search Order Hijacking Vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6.6 allows local u... |
| CVE-2020-7311 | HIGH | 7 | 0.3% | Sep 10, 2020 | Privilege Escalation vulnerability in the installer in McAfee Agent (MA) for Windows prior to 5.6.6 allows local users t... |
| CVE-2020-24552 | HIGH | 7.2 | 1.4% | Sep 10, 2020 | Atop Technology industrial 3G/4G gateway contains Command Injection vulnerability. Due to insufficient input validation,... |
| CVE-2020-25220 | HIGH | 7.8 | 0.4% | Sep 10, 2020 | The Linux kernel 4.9.x before 4.9.233, 4.14.x before 4.14.194, and 4.19.x before 4.19.140 has a use-after-free because s... |
| CVE-2020-24655 | MEDIUM | 5.1 | 0.2% | Sep 10, 2020 | A race condition in the Twilio Authy 2-Factor Authentication application before 24.3.7 for Android allows a user to pote... |
| CVE-2020-15173 | CRITICAL | 9.8 | 1.2% | Sep 9, 2020 | In ACCEL-PPP (an implementation of PPTP/PPPoE/L2TP/SSTP), there is a buffer overflow when receiving an l2tp control pack... |
| CVE-2020-25219 | HIGH | 7.5 | 4.3% | Sep 9, 2020 | url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion ... |
| CVE-2020-15903 | CRITICAL | 9.8 | 4.8% | Sep 9, 2020 | An issue was found in Nagios XI before 5.7.3. There is a privilege escalation vulnerability in backend scripts that ran ... |
| CVE-2020-24916 | CRITICAL | 9.8 | 17.4% | Sep 9, 2020 | CGI implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to OS command injection. |
| CVE-2020-24379 | CRITICAL | 9.8 | 3.4% | Sep 9, 2020 | WebDAV implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to XXE injection. |
| CVE-2020-1913 | HIGH | 8.1 | 1.2% | Sep 9, 2020 | An Integer signedness error in the JavaScript Interpreter in Facebook Hermes prior to commit 2c7af7ec481ceffd0d14ce2d7c0... |
| CVE-2020-1912 | HIGH | 8.1 | 1.8% | Sep 9, 2020 | An out-of-bounds read/write vulnerability when executing lazily compiled inner generator functions in Facebook Hermes pr... |
| CVE-2020-15791 | MEDIUM | 6.5 | 0.7% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All ver... |
| CVE-2020-15790 | MEDIUM | 5.3 | 0.9% | Sep 9, 2020 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). If configured in an insecure manner,... |
| CVE-2020-15789 | HIGH | 8.1 | 0.5% | Sep 9, 2020 | A vulnerability has been identified in Polarion Subversion Webclient (All versions). The web interface could allow a Cro... |
| CVE-2020-15788 | MEDIUM | 6.1 | 0.7% | Sep 9, 2020 | A vulnerability has been identified in Polarion Subversion Webclient (All versions). The Polarion subversion web applica... |
| CVE-2020-15787 | CRITICAL | 9.8 | 1.5% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC HMI Unified Comfort Panels (All versions <= V16). Affected devices insuff... |
| CVE-2020-15786 | CRITICAL | 9.8 | 1.5% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions < V... |
| CVE-2020-15785 | MEDIUM | 5.3 | 0.6% | Sep 9, 2020 | A vulnerability has been identified in Siveillance Video Client (All versions). In environments where Windows NTLM authe... |
| CVE-2020-15784 | MEDIUM | 5.3 | 0.6% | Sep 9, 2020 | A vulnerability has been identified in Spectrum Power 4 (All versions < V4.70 SP8). Insecure storage of sensitive inform... |
| CVE-2020-10056 | HIGH | 7.8 | 0.4% | Sep 9, 2020 | A vulnerability has been identified in License Management Utility (LMU) (All versions < V2.4). The lmgrd service of the ... |
| CVE-2020-10051 | HIGH | 7.8 | 0.3% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). Multiple services of the ... |
| CVE-2020-10050 | HIGH | 7.8 | 0.3% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC RTLS Locating Manager (All versions < V2.10.2). The directory of service ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now