2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27184 | MEDIUM | 5.9 | 0.3% | May 14, 2021 | The NPort IA5000A Series devices use Telnet as one of the network device management services. Telnet does not support th... |
| CVE-2020-27149 | MEDIUM | 6.5 | 0.7% | May 14, 2021 | By exploiting a vulnerability in NPort IA5150A/IA5250A Series before version 1.5, a user with “Read Only” privilege leve... |
| CVE-2020-23995 | MEDIUM | 6.5 | 1.5% | May 13, 2021 | An information disclosure vulnerability in ILIAS before 5.3.19, 5.4.12 and 6.0 allows remote authenticated attackers to ... |
| CVE-2020-27830 | MEDIUM | 5.5 | 0.3% | May 13, 2021 | A vulnerability was found in Linux Kernel where in the spk_ttyio_receive_buf2() function, it would dereference spk_ttyio... |
| CVE-2020-25713 | MEDIUM | 6.5 | 2.1% | May 13, 2021 | A malformed input file can lead to a segfault due to an out of bounds array access in raptor_xml_writer_start_element_co... |
| CVE-2020-27824 | MEDIUM | 5.5 | 1.6% | May 13, 2021 | A flaw was found in OpenJPEG’s encoder in the opj_dwt_calc_explicit_stepsizes() function. This flaw allows an attacker w... |
| CVE-2020-12526 | MEDIUM | 5.3 | 1.0% | May 13, 2021 | TwinCAT OPC UA Server in versions up to 2.3.0.12 and IPC Diagnostics UA Server in versions up to 3.1.0.1 from Beckhoff A... |
| CVE-2020-36198 | MEDIUM | 6.7 | 1.1% | May 13, 2021 | A command injection vulnerability has been reported to affect certain versions of Malware Remover. If exploited, this vu... |
| CVE-2020-28722 | MEDIUM | 5.4 | 0.6% | May 12, 2021 | Deskpro Cloud Platform and on-premise 2020.2.3.48207 from 2020-07-30 contains a cross-site scripting (XSS) vulnerability... |
| CVE-2020-19275 | MEDIUM | 5.3 | 1.2% | May 12, 2021 | An Information Disclosure vulnerability exists in dhcms 2017-09-18 when entering invalid characters after the normal int... |
| CVE-2020-18165 | MEDIUM | 4.8 | 0.9% | May 12, 2021 | Cross Site Scripting (XSS) in LAOBANCMS v2.0 allows remote attackers to execute arbitrary code by injecting commands int... |
| CVE-2020-19274 | MEDIUM | 6.1 | 0.9% | May 12, 2021 | A Cross SIte Scripting (XSS) vulnerability exists in Dhcms 2017-09-18 in guestbook via the message board, which could le... |
| CVE-2020-36289 | MEDIUM | 5.3 | 99.2% | May 12, 2021 | Affected versions of Atlassian Jira Server and Data Center allow an unauthenticated user to enumerate users via an Infor... |
| CVE-2020-26147 | MEDIUM | 5.4 | 7.6% | May 11, 2021 | An issue was discovered in the Linux kernel 5.8.9. The WEP, WPA, WPA2, and WPA3 implementations reassemble fragments eve... |
| CVE-2020-26146 | MEDIUM | 5.3 | 5.6% | May 11, 2021 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WPA, WPA2, and WPA3 implementations reassemble fra... |
| CVE-2020-26145 | MEDIUM | 6.5 | 3.5% | May 11, 2021 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept se... |
| CVE-2020-26144 | MEDIUM | 6.5 | 4.9% | May 11, 2021 | An issue was discovered on Samsung Galaxy S3 i9305 4.4.4 devices. The WEP, WPA, WPA2, and WPA3 implementations accept pl... |
| CVE-2020-26143 | MEDIUM | 6.5 | 4.2% | May 11, 2021 | An issue was discovered in the ALFA Windows 10 driver 1030.36.604 for AWUS036ACH. The WEP, WPA, WPA2, and WPA3 implement... |
| CVE-2020-26142 | MEDIUM | 5.3 | 2.1% | May 11, 2021 | An issue was discovered in the kernel in OpenBSD 6.6. The WEP, WPA, WPA2, and WPA3 implementations treat fragmented fram... |
| CVE-2020-26141 | MEDIUM | 6.5 | 3.1% | May 11, 2021 | An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The Wi-Fi implementation does not verify... |
| CVE-2020-26140 | MEDIUM | 6.5 | 2.9% | May 11, 2021 | An issue was discovered in the ALFA Windows 10 driver 6.1316.1209 for AWUS036H. The WEP, WPA, WPA2, and WPA3 implementat... |
| CVE-2020-26139 | MEDIUM | 5.3 | 6.5% | May 11, 2021 | An issue was discovered in the kernel in NetBSD 7.1. An Access Point (AP) forwards EAPOL frames to other clients even th... |
| CVE-2020-4536 | MEDIUM | 4.3 | 1.0% | May 11, 2021 | IBM OpenPages GRC Platform 8.1 could allow a remote attacker to obtain sensitive information when a detailed technical e... |
| CVE-2020-4535 | MEDIUM | 5.4 | 0.5% | May 11, 2021 | IBM OpenPages GRC Platform 8.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary... |
| CVE-2020-20267 | MEDIUM | 6.5 | 1.7% | May 11, 2021 | Mikrotik RouterOs before 6.47 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/resolver pro... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now