2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-3485MEDIUM6.3A vulnerability in the role-based access control (RBAC) functionality of the web management software of Cisco Vision Dyn...
CVE-2020-3484MEDIUM5.3A vulnerability in the web-based management interface of Cisco Vision Dynamic Signage Director could allow an unauthenti...
CVE-2020-3466MEDIUM6.1Multiple vulnerabilities in the web-based management interface of Cisco DNA Center software could allow an unauthenticat...
CVE-2020-3446CRITICAL9.8A vulnerability in Cisco Virtual Wide Area Application Services (vWAAS) with Cisco Enterprise NFV Infrastructure Softwar...
CVE-2020-3443HIGH8.8A vulnerability in Cisco Smart Software Manager On-Prem (SSM On-Prem) could allow an authenticated, remote attacker to e...
CVE-2020-3440MEDIUM6.5A vulnerability in Cisco Webex Meetings Desktop App for Windows could allow an unauthenticated, remote attacker to overw...
CVE-2020-3439MEDIUM4.8A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) Software could allow a...
CVE-2020-3389MEDIUM4.4A vulnerability in the installation component of Cisco Hyperflex HX-Series Software could allow an authenticated, local ...
CVE-2020-3152MEDIUM6.7A vulnerability in Cisco Connected Mobile Experiences (CMX) could allow an authenticated, local attacker with administra...
CVE-2020-3151MEDIUM6.7A vulnerability in the CLI of Cisco Connected Mobile Experiences (CMX) could allow an authenticated, local attacker with...
CVE-2020-23657MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
CVE-2020-23656MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Content."
CVE-2020-23655MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
CVE-2020-23654MEDIUM5.4NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) via the module "Shop."
CVE-2020-5928LOW3.1In versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6.5.1, BI...
CVE-2020-5927MEDIUM6.1In versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, and 14.1.0-14.1.2.6, BIG-IP ASM Configuration utility Stored-Cross Site Sc...
CVE-2020-5926HIGH7.5In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, and 14.1.0-14.1.2.6, a BIG-IP virtual server with a Session Initiat...
CVE-2020-5925HIGH7.5In BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.3, 12.1.0-12.1.5.1, and 11.6.1-11.6....
CVE-2020-5921HIGH7.5in BIG-IP versions 15.1.0-15.1.0.4, 15.0.0-15.0.1.3, 14.1.0-14.1.2.6, 13.1.0-13.1.3.4, 12.1.0-12.1.5.1, and 11.6.1-11.6....
CVE-2020-24661MEDIUM5.9GNOME Geary before 3.36.3 mishandles pinned TLS certificate verification for IMAP and SMTP services using invalid TLS ce...
CVE-2020-15486MEDIUM6.5An issue was discovered on Dr Trust ECG Pen 2.00.08 devices. Because the Bluetooth LE support is implemented without a r...
CVE-2020-15483MEDIUM6.8An issue was discovered on Nescomed Multipara Monitor M1000 devices. The physical UART debug port provides a shell, with...
CVE-2020-15482HIGH7.8An issue was discovered on Nescomed Multipara Monitor M1000 devices. The device enables an unencrypted TELNET service by...
CVE-2020-13821MEDIUM5.4An issue was discovered in HiveMQ Broker Control Center 4.3.2. A crafted clientid parameter in an MQTT packet (sent to t...
CVE-2020-5924MEDIUM5.3In BIG-IP APM versions 12.1.0-12.1.5.1 and 11.6.1-11.6.5.2, RADIUS authentication leaks memory when the username for aut...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now