2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-17376HIGH8.3An issue was discovered in Guest.migrate in virt/libvirt/guest.py in OpenStack Nova before 19.3.1, 20.x before 20.3.1, a...
CVE-2020-15156HIGH8.1In nodebb-plugin-blog-comments before version 0.7.0, a logged in user is vulnerable to an XSS attack which could allow a...
CVE-2020-12855HIGH8.8A Host header injection vulnerability has been discovered in SecZetta NEProfile 3.3.11. Authenticated remote adversaries...
CVE-2020-12456HIGH8.8A remote code execution vulnerability in Mitel MiVoice Connect Client before 214.100.1223.0 could allow an attacker to e...
CVE-2020-11797HIGH7.5An Authentication Bypass vulnerability in the Published Area of the web conferencing component of Mitel MiCollab AWV bef...
CVE-2020-11497HIGH7.5An issue was discovered in the NAB Transact extension 2.1.0 for the WooCommerce plugin for WordPress. An online payment ...
CVE-2020-23660MEDIUM5.4webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."
CVE-2020-23659MEDIUM5.4WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature.
CVE-2020-23658MEDIUM5.4PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php.
CVE-2020-15158CRITICAL9.8In libIEC61850 before version 1.4.3, when a message with COTP message length field with value < 4 is received an integer...
CVE-2020-13863HIGH8.1The SAS portal of Mitel MiCollab before 9.1.3 could allow an attacker to access user data by performing a header injecti...
CVE-2020-13767MEDIUM5.9The Mitel MiCollab application before 9.1.332 for iOS could allow an unauthorized user to access restricted files and fo...
CVE-2020-13617HIGH7.5The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unau...
CVE-2020-3523MEDIUM5.4A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3522MEDIUM6.3A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3521MEDIUM6.5A vulnerability in a specific REST API of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated...
CVE-2020-3520MEDIUM5.5A vulnerability in Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, local attacker to obt...
CVE-2020-3519HIGH8.1A vulnerability in a specific REST API method of Cisco Data Center Network Manager (DCNM) Software could allow an authen...
CVE-2020-3518MEDIUM5.4A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3507HIGH8.8Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Came...
CVE-2020-3506HIGH8.8Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Came...
CVE-2020-3505MEDIUM6.5A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauth...
CVE-2020-3496MEDIUM5.3A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u...
CVE-2020-3491MEDIUM4.8A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica...
CVE-2020-3490MEDIUM4.9A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now