2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-15054HIGH8.8TP-Link USB Network Server TL-PS310U devices before 2.079.000.t0210 allow an attacker on the same network to elevate pri...
CVE-2020-5412MEDIUM6.5Spring Cloud Netflix, versions 2.2.x prior to 2.2.4, versions 2.1.x prior to 2.1.6, and older unsupported versions allow...
CVE-2020-15480HIGH8.8An issue was discovered in PassMark BurnInTest through 9.1, OSForensics through 7.1, and PerformanceTest through 10. The...
CVE-2020-15479HIGH8.8An issue was discovered in PassMark BurnInTest through 9.1, OSForensics through 7.1, and PerformanceTest through 10. The...
CVE-2020-17352HIGH8.8Two OS command injection vulnerabilities in the User Portal of Sophos XG Firewall through 2020-08-05 potentially allow a...
CVE-2020-16169CRITICAL9.8Authentication Bypass Using an Alternate Path or Channel in temi Robox OS prior to120, temi Android app up to 1.3.7931 a...
CVE-2020-16167CRITICAL9.1Missing Authentication for Critical Function in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remot...
CVE-2020-15907MEDIUM6.1In Mahara 19.04 before 19.04.6, 19.10 before 19.10.4, and 20.04 before 20.04.1, certain places could execute file or fol...
CVE-2020-13376CRITICAL9SecurEnvoy SecurMail 9.3.503 allows attackers to upload executable files and achieve OS command execution via a crafted ...
CVE-2020-15138HIGH7.5Prism is vulnerable to Cross-Site Scripting. The easing preview of the Previewers plugin has an XSS vulnerability that a...
CVE-2020-9490HIGH7.5Apache HTTP Server versions 2.4.20 to 2.4.43. A specially crafted value for the 'Cache-Digest' header in a HTTP/2 reques...
CVE-2020-7810HIGH8.8hslogin2.dll ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded and ex...
CVE-2020-11993HIGH7.5Apache HTTP Server versions 2.4.20 to 2.4.43 When trace/debug was enabled for the HTTP/2 module and on certain traffic e...
CVE-2020-11985MEDIUM5.3IP address spoofing when proxying using mod_remoteip and mod_rewrite For configurations using proxying with mod_remoteip...
CVE-2020-11984CRITICAL9.8Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE
CVE-2020-11852HIGH8.8DKIM key management page vulnerability on Micro Focus Secure Messaging Gateway (SMG). Affecting all SMG Appliance runnin...
CVE-2020-16636Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2020-16168MEDIUM6.5Origin Validation Error in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to access...
CVE-2020-8026HIGH7.8A Incorrect Default Permissions vulnerability in the packaging of inn in openSUSE Leap 15.2, openSUSE Tumbleweed, openSU...
CVE-2020-8025CRITICAL9.3A Incorrect Execution-Assigned Permissions vulnerability in the permissions package of SUSE Linux Enterprise Server 12-S...
CVE-2020-16227HIGH7.8Delta Electronics TPEditor Versions 1.97 and prior. An improper input validation may be exploited by processing a specia...
CVE-2020-16225HIGH7.8Delta Electronics TPEditor Versions 1.97 and prior. A write-what-where condition may be exploited by processing a specia...
CVE-2020-16223HIGH7.8Delta Electronics TPEditor Versions 1.97 and prior. A heap-based buffer overflow may be exploited by processing a specia...
CVE-2020-16221HIGH7.8Delta Electronics TPEditor Versions 1.97 and prior. A stack-based buffer overflow may be exploited by processing a speci...
CVE-2020-16219HIGH7.8Delta Electronics TPEditor Versions 1.97 and prior. An out-of-bounds read may be exploited by processing specially craft...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now