2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-11584 | MEDIUM | 6.1 | 0.9% | Aug 3, 2020 | A GET-based XSS reflected vulnerability in Plesk Onyx 17.8.11 allows remote unauthenticated users to inject arbitrary Ja... |
| CVE-2020-11583 | MEDIUM | 6.1 | 1.0% | Aug 3, 2020 | A GET-based XSS reflected vulnerability in Plesk Obsidian 18.0.17 allows remote unauthenticated users to inject arbitrar... |
| CVE-2020-5773 | HIGH | 8.8 | 1.0% | Aug 3, 2020 | Improper Access Control in Teltonika firmware TRB2_R_00.02.04.01 allows a low privileged user to perform unauthorized wr... |
| CVE-2020-5772 | HIGH | 7.5 | 1.1% | Aug 3, 2020 | Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root ... |
| CVE-2020-5771 | HIGH | 7.5 | 2.0% | Aug 3, 2020 | Improper Input Validation in Teltonika firmware TRB2_R_00.02.04.01 allows a remote, authenticated attacker to gain root ... |
| CVE-2020-5770 | HIGH | 8.8 | 0.7% | Aug 3, 2020 | Cross-site request forgery in Teltonika firmware TRB2_R_00.02.04.01 allows a remote attacker to perform sensitive applic... |
| CVE-2020-16116 | LOW | 3.3 | 1.7% | Aug 3, 2020 | In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory vi... |
| CVE-2020-8575 | MEDIUM | 4.4 | 0.3% | Aug 3, 2020 | Active IQ Unified Manager for VMware vSphere and Windows versions prior to 9.5 are susceptible to a vulnerability which ... |
| CVE-2020-8574 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | Active IQ Unified Manager for Linux versions prior to 9.6 ship with the Java Management Extension Remote Method Invocati... |
| CVE-2020-16272 | CRITICAL | 9.1 | 2.8% | Aug 3, 2020 | The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 is missing validation for a client-provided parameter, w... |
| CVE-2020-16271 | CRITICAL | 9.1 | 1.5% | Aug 3, 2020 | The SRP-6a implementation in Kee Vault KeePassRPC before 1.12.0 generates insufficiently random numbers, which allows re... |
| CVE-2020-16131 | MEDIUM | 6.1 | 0.7% | Aug 3, 2020 | Tiki before 21.2 allows XSS because [\s\/"\'] is not properly considered in lib/core/TikiFilter/PreventXss.php. |
| CVE-2020-14319 | MEDIUM | 5.9 | 0.3% | Aug 3, 2020 | It was found that the AMQ Online console is vulnerable to a Cross-Site Request Forgery (CSRF) which is exploitable in ca... |
| CVE-2020-13820 | MEDIUM | 6.1 | 3.5% | Aug 3, 2020 | Extreme Management Center 8.4.1.24 allows unauthenticated reflected XSS via a parameter in a GET request. |
| CVE-2020-12739 | MEDIUM | 5.3 | 1.9% | Aug 3, 2020 | A denial-of-service vulnerability in the Fanuc i Series CNC (0i-MD and 0i Mate-MD) could allow an unauthenticated, remot... |
| CVE-2020-16269 | MEDIUM | 5.5 | 1.0% | Aug 3, 2020 | radare2 4.5.0 misparses DWARF information in executable files, causing a segmentation fault in parse_typedef in type_dwa... |
| CVE-2020-4560 | MEDIUM | 6.1 | 0.9% | Aug 3, 2020 | IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed ... |
| CVE-2020-4554 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by ... |
| CVE-2020-4553 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by ... |
| CVE-2020-4552 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory c... |
| CVE-2020-4551 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by ... |
| CVE-2020-4550 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 and 9.2.2 could allow a local attacker to execute arbitrary code on the system, caused by ... |
| CVE-2020-4549 | HIGH | 7.8 | 0.4% | Aug 3, 2020 | IBM i2 Analyst Notebook 9.2.1 could allow a local attacker to execute arbitrary code on the system, caused by a memory c... |
| CVE-2020-4534 | HIGH | 8.8 | 0.4% | Aug 3, 2020 | IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 could allow a local authenticated attacker to gain elevated priv... |
| CVE-2020-4377 | CRITICAL | 9.1 | 2.1% | Aug 3, 2020 | IBM Cognos Anaytics 11.0 and 11.1 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML dat... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now