2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3537 | MEDIUM | 5.7 | 1.3% | Sep 4, 2020 | A vulnerability in Cisco Jabber for Windows software could allow an authenticated, remote attacker to gain access to sen... |
| CVE-2020-3530 | HIGH | 8.4 | 0.3% | Sep 4, 2020 | A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticate... |
| CVE-2020-3498 | MEDIUM | 6.5 | 1.9% | Sep 4, 2020 | A vulnerability in Cisco Jabber software could allow an authenticated, remote attacker to gain access to sensitive infor... |
| CVE-2020-3495 | HIGH | 8.8 | 61.9% | Sep 4, 2020 | A vulnerability in Cisco Jabber for Windows could allow an authenticated, remote attacker to execute arbitrary code. The... |
| CVE-2020-3478 | HIGH | 8.1 | 1.2% | Sep 4, 2020 | A vulnerability in the REST API of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, re... |
| CVE-2020-3473 | HIGH | 7.8 | 0.4% | Sep 4, 2020 | A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticate... |
| CVE-2020-3453 | MEDIUM | 6.8 | 3.1% | Sep 4, 2020 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow ... |
| CVE-2020-3451 | MEDIUM | 4.7 | 2.2% | Sep 4, 2020 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV340 Series Routers could allow ... |
| CVE-2020-3430 | HIGH | 8.8 | 3.9% | Sep 4, 2020 | A vulnerability in the application protocol handling features of Cisco Jabber for Windows could allow an unauthenticated... |
| CVE-2020-3365 | MEDIUM | 6.5 | 1.6% | Sep 4, 2020 | A vulnerability in the directory permissions of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an auth... |
| CVE-2020-1911 | CRITICAL | 9.8 | 2.0% | Sep 4, 2020 | A type confusion vulnerability when resolving properties of JavaScript objects with specially-crafted prototype chains i... |
| CVE-2020-24941 | HIGH | 7.5 | 1.1% | Sep 4, 2020 | An issue was discovered in Laravel before 6.18.35 and 7.x before 7.24.0. The $guarded property is mishandled in some sit... |
| CVE-2020-24940 | HIGH | 7.5 | 1.2% | Sep 4, 2020 | An issue was discovered in Laravel before 6.18.34 and 7.x before 7.23.2. Unvalidated values are saved to the database in... |
| CVE-2020-24980 | — | — | — | Sep 4, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-24979 | — | — | — | Sep 4, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-24978 | CRITICAL | 9.8 | 1.4% | Sep 4, 2020 | In NASM 2.15.04rc3, there is a double-free vulnerability in pp_tokline asm/preproc.c. This is fixed in commit 8806c3ca00... |
| CVE-2020-24977 | MEDIUM | 6.5 | 3.7% | Sep 4, 2020 | GNOME project libxml2 v2.9.10 has a global buffer over-read vulnerability in xmlEncodeEntitiesInternal at libxml2/entiti... |
| CVE-2020-24999 | HIGH | 7.8 | 1.1% | Sep 3, 2020 | There is an invalid memory access in the function fprintf located in Error.cc in Xpdf 4.0.2. It can be triggered by send... |
| CVE-2020-24996 | HIGH | 7.8 | 1.1% | Sep 3, 2020 | There is an invalid memory access in the function TextString::~TextString() located in Catalog.cc in Xpdf 4.0.2. It can ... |
| CVE-2020-25006 | CRITICAL | 9.8 | 2.3% | Sep 3, 2020 | Heybbs v1.2 has a SQL injection vulnerability in login.php file via the username parameter which may allow a remote atta... |
| CVE-2020-25005 | CRITICAL | 9.8 | 2.3% | Sep 3, 2020 | Heybbs v1.2 has a SQL injection vulnerability in msg.php file via the ID parameter which may allow a remote attacker to ... |
| CVE-2020-25004 | CRITICAL | 9.8 | 2.3% | Sep 3, 2020 | Heybbs v1.2 has a SQL injection vulnerability in user.php file via the ID parameter which may allow a remote attacker to... |
| CVE-2020-1894 | HIGH | 8.8 | 1.8% | Sep 3, 2020 | A stack write overflow in WhatsApp for Android prior to v2.20.35, WhatsApp Business for Android prior to v2.20.20, Whats... |
| CVE-2020-1891 | CRITICAL | 9.8 | 1.5% | Sep 3, 2020 | A user controlled parameter used in video call in WhatsApp for Android prior to v2.20.17, WhatsApp Business for Android ... |
| CVE-2020-1890 | HIGH | 7.5 | 1.4% | Sep 3, 2020 | A URL validation issue in WhatsApp for Android prior to v2.20.11 and WhatsApp Business for Android prior to v2.20.2 coul... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now