2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3460 | MEDIUM | 6.1 | 0.7% | Jul 31, 2020 | A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthe... |
| CVE-2020-3386 | HIGH | 8.8 | 2.0% | Jul 31, 2020 | A vulnerability in the REST API endpoint of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remot... |
| CVE-2020-3384 | HIGH | 8.2 | 0.8% | Jul 31, 2020 | A vulnerability in specific REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated,... |
| CVE-2020-3383 | HIGH | 8.8 | 7.0% | Jul 31, 2020 | A vulnerability in the archive utility of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote ... |
| CVE-2020-3382 | CRITICAL | 9.8 | 2.3% | Jul 31, 2020 | A vulnerability in the REST API of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attac... |
| CVE-2020-3377 | HIGH | 8.8 | 1.0% | Jul 31, 2020 | A vulnerability in the Device Manager application of Cisco Data Center Network Manager (DCNM) could allow an authenticat... |
| CVE-2020-3376 | CRITICAL | 9.8 | 1.2% | Jul 31, 2020 | A vulnerability in the Device Manager application of Cisco Data Center Network Manager (DCNM) could allow an unauthentic... |
| CVE-2020-3375 | CRITICAL | 9.8 | 3.9% | Jul 31, 2020 | A vulnerability in Cisco SD-WAN Solution Software could allow an unauthenticated, remote attacker to cause a buffer over... |
| CVE-2020-3374 | CRITICAL | 9.9 | 1.9% | Jul 31, 2020 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, rem... |
| CVE-2020-16166 | LOW | 3.7 | 5.2% | Jul 30, 2020 | The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information a... |
| CVE-2020-16165 | CRITICAL | 9.8 | 1.2% | Jul 30, 2020 | The DAO/DTO implementation in SpringBlade through 2.7.1 allows SQL Injection in an ORDER BY clause. This is related to t... |
| CVE-2020-7205 | MEDIUM | 6.7 | 0.4% | Jul 30, 2020 | A potential security vulnerability has been identified in HPE Intelligent Provisioning, Service Pack for ProLiant, and H... |
| CVE-2020-16164 | HIGH | 7.4 | 0.9% | Jul 30, 2020 | An issue was discovered in RIPE NCC RPKI Validator 3.x through 3.1-2020.07.06.14.28. It allows remote attackers to bypas... |
| CVE-2020-16163 | CRITICAL | 9.1 | 1.3% | Jul 30, 2020 | An issue was discovered in RIPE NCC RPKI Validator 3.x before 3.1-2020.07.06.14.28. RRDP fetches proceed even with a lac... |
| CVE-2020-16162 | HIGH | 7.5 | 0.7% | Jul 30, 2020 | An issue was discovered in RIPE NCC RPKI Validator 3.x through 3.1-2020.07.06.14.28. Missing validation checks on CRL pr... |
| CVE-2020-15129 | MEDIUM | 4.7 | 8.2% | Jul 30, 2020 | In Traefik before versions 1.7.26, 2.2.8, and 2.3.0-rc3, there exists a potential open redirect vulnerability in Traefik... |
| CVE-2020-16157 | MEDIUM | 5.4 | 14.4% | Jul 30, 2020 | A Stored XSS vulnerability exists in Nagios Log Server before 2.1.7 via the Notification Methods -> Email Users menu. |
| CVE-2020-15131 | HIGH | 7.5 | 1.0% | Jul 30, 2020 | In SLP Validate (npm package slp-validate) before version 1.2.2, there is a vulnerability to false-positive validation o... |
| CVE-2020-15130 | HIGH | 7.5 | 1.0% | Jul 30, 2020 | In SLPJS (npm package slpjs) before version 0.27.4, there is a vulnerability to false-positive validation outcomes for t... |
| CVE-2020-7829 | HIGH | 7.8 | 1.2% | Jul 30, 2020 | DaviewIndy 8.98.4 and earlier version contain Heap-based overflow vulnerability, triggered when the user opens a malform... |
| CVE-2020-7828 | HIGH | 7.8 | 1.2% | Jul 30, 2020 | DaviewIndy 8.98.4 and earlier version contain Heap-based overflow vulnerability, triggered when the user opens a malform... |
| CVE-2020-7827 | HIGH | 7.8 | 1.3% | Jul 30, 2020 | DaviewIndy 8.98.7 and earlier version contain Use-After-Free vulnerability, triggered when the user opens a malformed sp... |
| CVE-2020-15957 | HIGH | 7.5 | 1.6% | Jul 30, 2020 | An issue was discovered in DP3T-Backend-SDK before 1.1.1 for Decentralised Privacy-Preserving Proximity Tracing (DP3T). ... |
| CVE-2020-15511 | MEDIUM | 5.3 | 0.9% | Jul 30, 2020 | HashiCorp Terraform Enterprise up to v202006-1 contained a default signup page that allowed user registration even when ... |
| CVE-2020-14162 | HIGH | 7.8 | 0.6% | Jul 30, 2020 | An issue was discovered in Pi-Hole through 5.0. The local www-data user has sudo privileges to execute the pihole core s... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now