2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-5383MEDIUM5.3Dell EMC Isilon OneFS version 8.2.2 and Dell EMC PowerScale OneFS version 9.0.0 contains a buffer overflow vulnerability...
CVE-2020-24717HIGH7.8OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by ...
CVE-2020-24716HIGH7.8OpenZFS before 2.0.0-rc1, when used on FreeBSD, allows execute permissions for all directories.
CVE-2020-24203CRITICAL9.8Insecure File Permissions and Arbitrary File Upload in the upload pic function in updatesubcategory.php in Projects Worl...
CVE-2020-24202CRITICAL9.8File Upload component in Projects World House Rental v1.0 suffers from an arbitrary file upload vulnerability with regul...
CVE-2020-24196HIGH7.2An Arbitrary File Upload in Vehicle Image Upload in Online Bike Rental v1.0 allows authenticated admin to conduct remote...
CVE-2020-3517HIGH8.6A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an un...
CVE-2020-3504LOW3.3A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, loc...
CVE-2020-3454HIGH7.2A vulnerability in the Call Home feature of Cisco NX-OS Software could allow an authenticated, remote attacker to inject...
CVE-2020-3415HIGH8.8A vulnerability in the Data Management Engine (DME) of Cisco NX-OS Software could allow an unauthenticated, adjacent att...
CVE-2020-3398HIGH8.6A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could a...
CVE-2020-3397HIGH8.6A vulnerability in the Border Gateway Protocol (BGP) Multicast VPN (MVPN) implementation of Cisco NX-OS Software could a...
CVE-2020-3394HIGH7.8A vulnerability in the Enable Secret feature of Cisco Nexus 3000 Series Switches and Cisco Nexus 9000 Series Switches in...
CVE-2020-3338HIGH7.5A vulnerability in the Protocol Independent Multicast (PIM) feature for IPv6 networks (PIM6) of Cisco NX-OS Software cou...
CVE-2020-24706MEDIUM6.1An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager through...
CVE-2020-24705HIGH8.8An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an att...
CVE-2020-24704MEDIUM6.1An issue was discovered in certain WSO2 products. The Try It tool allows Reflected XSS. This affects API Manager 2.2.0, ...
CVE-2020-24703HIGH8.8An issue was discovered in certain WSO2 products. A valid Carbon Management Console session cookie may be sent to an att...
CVE-2020-24390MEDIUM6.1eonweb in EyesOfNetwork before 5.3-7 does not properly escape the username on the /module/admin_logs page, which might a...
CVE-2020-23576MEDIUM5.4Laborator Neon dashboard v3 is affected by stored Cross Site Scripting (XSS) via the chat tab.
CVE-2020-16142LOW3.5On Mercedes-Benz C Class AMG Premium Plus c220 BlueTec vehicles, the Bluetooth stack mishandles %x and %c format-string ...
CVE-2020-14415LOW3.3oss_write in audio/ossaudio.c in QEMU before 5.0.0 mishandles a buffer position.
CVE-2020-23984MEDIUM5.4Online Hotel Booking System Pro PHP Version 1.3 has Persistent Cross-site Scripting in Customer registration-form all-ta...
CVE-2020-23983MEDIUM5.4Michael-design iChat Realtime PHP Live Support System 1.6 has persistent Cross-site Scripting via chat,text-filed tags.
CVE-2020-23982MEDIUM6.1DesignMasterEvents Conference management 1.0.0 has cross site scripting via the 'certificate.php'

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now