2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-17376 | HIGH | 8.3 | 1.7% | Aug 26, 2020 | An issue was discovered in Guest.migrate in virt/libvirt/guest.py in OpenStack Nova before 19.3.1, 20.x before 20.3.1, a... |
| CVE-2020-15156 | HIGH | 8.1 | 0.6% | Aug 26, 2020 | In nodebb-plugin-blog-comments before version 0.7.0, a logged in user is vulnerable to an XSS attack which could allow a... |
| CVE-2020-12855 | HIGH | 8.8 | 2.2% | Aug 26, 2020 | A Host header injection vulnerability has been discovered in SecZetta NEProfile 3.3.11. Authenticated remote adversaries... |
| CVE-2020-12456 | HIGH | 8.8 | 3.1% | Aug 26, 2020 | A remote code execution vulnerability in Mitel MiVoice Connect Client before 214.100.1223.0 could allow an attacker to e... |
| CVE-2020-11797 | HIGH | 7.5 | 1.2% | Aug 26, 2020 | An Authentication Bypass vulnerability in the Published Area of the web conferencing component of Mitel MiCollab AWV bef... |
| CVE-2020-11497 | HIGH | 7.5 | 1.2% | Aug 26, 2020 | An issue was discovered in the NAB Transact extension 2.1.0 for the WooCommerce plugin for WordPress. An online payment ... |
| CVE-2020-23660 | MEDIUM | 5.4 | 0.5% | Aug 26, 2020 | webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search." |
| CVE-2020-23659 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature. |
| CVE-2020-23658 | MEDIUM | 5.4 | 0.5% | Aug 26, 2020 | PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php. |
| CVE-2020-15158 | CRITICAL | 9.8 | 2.0% | Aug 26, 2020 | In libIEC61850 before version 1.4.3, when a message with COTP message length field with value < 4 is received an integer... |
| CVE-2020-13863 | HIGH | 8.1 | 1.1% | Aug 26, 2020 | The SAS portal of Mitel MiCollab before 9.1.3 could allow an attacker to access user data by performing a header injecti... |
| CVE-2020-13767 | MEDIUM | 5.9 | 0.9% | Aug 26, 2020 | The Mitel MiCollab application before 9.1.332 for iOS could allow an unauthorized user to access restricted files and fo... |
| CVE-2020-13617 | HIGH | 7.5 | 1.2% | Aug 26, 2020 | The Web UI component of Mitel MiVoice 6800 and 6900 series SIP Phones with firmware before 5.1.0.SP5 could allow an unau... |
| CVE-2020-3523 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3522 | MEDIUM | 6.3 | 0.8% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3521 | MEDIUM | 6.5 | 1.8% | Aug 26, 2020 | A vulnerability in a specific REST API of Cisco Data Center Network Manager (DCNM) Software could allow an authenticated... |
| CVE-2020-3520 | MEDIUM | 5.5 | 0.3% | Aug 26, 2020 | A vulnerability in Cisco Data Center Network Manager (DCNM) Software could allow an authenticated, local attacker to obt... |
| CVE-2020-3519 | HIGH | 8.1 | 1.0% | Aug 26, 2020 | A vulnerability in a specific REST API method of Cisco Data Center Network Manager (DCNM) Software could allow an authen... |
| CVE-2020-3518 | MEDIUM | 5.4 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a... |
| CVE-2020-3507 | HIGH | 8.8 | 0.7% | Aug 26, 2020 | Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Came... |
| CVE-2020-3506 | HIGH | 8.8 | 1.0% | Aug 26, 2020 | Multiple vulnerabilities in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Came... |
| CVE-2020-3505 | MEDIUM | 6.5 | 0.6% | Aug 26, 2020 | A vulnerability in the Cisco Discovery Protocol of Cisco Video Surveillance 8000 Series IP Cameras could allow an unauth... |
| CVE-2020-3496 | MEDIUM | 5.3 | 1.7% | Aug 26, 2020 | A vulnerability in the IPv6 packet processing engine of Cisco Small Business Smart and Managed Switches could allow an u... |
| CVE-2020-3491 | MEDIUM | 4.8 | 0.6% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica... |
| CVE-2020-3490 | MEDIUM | 4.9 | 3.0% | Aug 26, 2020 | A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an authentica... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now