2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-21830 | HIGH | 8.8 | 1.2% | May 17, 2021 | A heap based buffer overflow vulneraibility exists in GNU LibreDWG 0.10 via bit_calc_CRC ../../src/bits.c:2213. |
| CVE-2020-21827 | HIGH | 7.8 | 1.0% | May 17, 2021 | A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10 via read_2004_compressed_section ../../src/decode... |
| CVE-2020-21819 | HIGH | 8.8 | 1.2% | May 17, 2021 | A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641via htmlescape ../../programs/escape.c:51. |
| CVE-2020-21818 | HIGH | 8.8 | 1.2% | May 17, 2021 | A heap based buffer overflow vulnerability exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:48. |
| CVE-2020-21816 | HIGH | 8.8 | 1.2% | May 17, 2021 | A heab based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlescape ../../programs/escape.c:46. |
| CVE-2020-21814 | HIGH | 8.8 | 1.2% | May 17, 2021 | A heap based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via htmlwescape ../../programs/escape.c:97. |
| CVE-2020-21813 | HIGH | 7.8 | 1.0% | May 17, 2021 | A heap based buffer overflow issue exists in GNU LibreDWG 0.10.2641 via output_TEXT ../../programs/dwg2SVG.c:114. |
| CVE-2020-27833 | HIGH | 7.1 | 1.7% | May 14, 2021 | A Zip Slip vulnerability was found in the oc binary in openshift-clients where an arbitrary file write is achieved by us... |
| CVE-2020-24119 | HIGH | 7.1 | 1.1% | May 14, 2021 | A heap buffer overflow read was discovered in upx 4.0.0, because the check in p_lx_elf.cpp is not perfect. |
| CVE-2020-4985 | HIGH | 7.5 | 1.0% | May 14, 2021 | IBM Planning Analytics Local 2.0 could allow an attacker to obtain sensitive information due to accepting body parameter... |
| CVE-2020-27185 | HIGH | 7.5 | 0.7% | May 14, 2021 | Cleartext transmission of sensitive information via Moxa Service in NPort IA5000A series serial devices. Successfully ex... |
| CVE-2020-27150 | HIGH | 7.5 | 1.1% | May 14, 2021 | In multiple versions of NPort IA5000A Series, the result of exporting a device’s configuration contains the passwords of... |
| CVE-2020-27020 | HIGH | 7.5 | 0.7% | May 14, 2021 | Password generator feature in Kaspersky Password Manager was not completely cryptographically strong and potentially all... |
| CVE-2020-23996 | HIGH | 8.8 | 2.3% | May 13, 2021 | A local file inclusion vulnerability in ILIAS before 5.3.19, 5.4.10 and 6.0 allows remote authenticated attackers to exe... |
| CVE-2020-27823 | HIGH | 7.8 | 1.1% | May 13, 2021 | A flaw was found in OpenJPEG’s encoder. This flaw allows an attacker to pass specially crafted x,y offset input to OpenJ... |
| CVE-2020-21342 | HIGH | 7.5 | 1.2% | May 13, 2021 | Insecure permissions issue in zzcms 201910 via the reset any user password in /one/getpassword.php. |
| CVE-2020-12967 | HIGH | 7.2 | 1.7% | May 13, 2021 | The lack of nested page table protection in the AMD SEV/SEV-ES feature could potentially lead to arbitrary code executio... |
| CVE-2020-36197 | HIGH | 8.8 | 18.5% | May 13, 2021 | An improper access control vulnerability has been reported to affect earlier versions of Music Station. If exploited, th... |
| CVE-2020-27840 | HIGH | 7.5 | 3.8% | May 12, 2021 | A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause in... |
| CVE-2020-28393 | HIGH | 7.5 | 1.6% | May 12, 2021 | An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSP... |
| CVE-2020-25242 | HIGH | 7.5 | 1.3% | May 12, 2021 | A vulnerability has been identified in SIMATIC NET CP 343-1 Advanced (incl. SIPLUS variants) (All versions), SIMATIC NET... |
| CVE-2020-18964 | HIGH | 8.8 | 0.6% | May 11, 2021 | Cross Site Request Forgery (CSRF) Vulnerability in ForestBlog latest version via the website Management background, whic... |
| CVE-2020-27246 | HIGH | 8.8 | 0.8% | May 11, 2021 | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The... |
| CVE-2020-27245 | HIGH | 8.8 | 0.8% | May 11, 2021 | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The... |
| CVE-2020-27244 | HIGH | 8.8 | 0.8% | May 11, 2021 | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now