2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-13913 | MEDIUM | 6.1 | 1.3% | Jul 28, 2020 | An XSS issue in emfd in Ruckus Wireless Unleashed through 200.7.10.102.92 allows a remote attacker to execute JavaScript... |
| CVE-2020-15715 | CRITICAL | 9.9 | 4.2% | Jul 28, 2020 | rConfig 3.9.5 could allow a remote authenticated attacker to execute arbitrary code on the system, because of an error i... |
| CVE-2020-15714 | HIGH | 8.8 | 2.8% | Jul 28, 2020 | rConfig 3.9.5 is vulnerable to SQL injection. A remote authenticated attacker could send crafted SQL statements to the d... |
| CVE-2020-15713 | HIGH | 8.8 | 2.8% | Jul 28, 2020 | rConfig 3.9.5 is vulnerable to SQL injection. A remote authenticated attacker could send crafted SQL statements to the d... |
| CVE-2020-15712 | MEDIUM | 4.3 | 1.6% | Jul 28, 2020 | rConfig 3.9.5 could allow a remote authenticated attacker to traverse directories on the system. An attacker could send ... |
| CVE-2020-4465 | MEDIUM | 6.5 | 1.9% | Jul 28, 2020 | IBM MQ, IBM MQ Appliance, and IBM MQ for HPE NonStop 8.0, 9.1 CD, and 9.1 LTS is vulnerable to a buffer overflow vulnera... |
| CVE-2020-4375 | HIGH | 7.5 | 1.5% | Jul 28, 2020 | IBM MQ, IBM MQ Appliance, IBM MQ for HPE NonStop 8.0, 9.1 CD, and 9.1 LTS could allow an attacker to cause a denial of s... |
| CVE-2020-4319 | MEDIUM | 4.3 | 0.7% | Jul 28, 2020 | IBM MQ, IBM MQ Appliance, and IBM MQ for HPE NonStop 8.0, 9.1 LTS, and 9.1 CD could allow under special circumstances, a... |
| CVE-2020-4318 | MEDIUM | 5.4 | 0.6% | Jul 28, 2020 | IBM Intelligent Operations Center for Emergency Management, Intelligent Operations Center (IOC), and IBM Water Operation... |
| CVE-2020-4317 | MEDIUM | 5.4 | 0.6% | Jul 28, 2020 | IBM Intelligent Operations Center for Emergency Management, Intelligent Operations Center (IOC), and IBM Water Operation... |
| CVE-2020-16088 | CRITICAL | 9.8 | 2.4% | Jul 28, 2020 | iked in OpenIKED, as used in OpenBSD through 6.7, allows authentication bypass because ca.c has the wrong logic for chec... |
| CVE-2020-12880 | MEDIUM | 5.5 | 0.5% | Jul 27, 2020 | An issue was discovered in Pulse Policy Secure (PPS) and Pulse Connect Secure (PCS) Virtual Appliance before 9.1R8. By m... |
| CVE-2020-12845 | HIGH | 7.5 | 3.2% | Jul 27, 2020 | Cherokee 0.4.27 to 1.2.104 is affected by a denial of service due to a NULL pointer dereferences. A remote unauthenticat... |
| CVE-2020-12460 | CRITICAL | 9.8 | 3.7% | Jul 27, 2020 | OpenDMARC through 1.3.2 and 1.4.x through 1.4.0-Beta1 has improper null termination in the function opendmarc_xml_parse ... |
| CVE-2020-10643 | MEDIUM | 5.4 | 1.0% | Jul 27, 2020 | An authenticated remote attacker could use specially crafted URLs to send a victim using PI Vision 2019 mobile to a vuln... |
| CVE-2020-8558 | HIGH | 8.8 | 3.6% | Jul 27, 2020 | The Kubelet and kube-proxy components in versions 1.1.0-1.16.10, 1.17.0-1.17.6, and 1.18.0-1.18.3 were found to contain ... |
| CVE-2020-1457 | HIGH | 7.8 | 12.3% | Jul 27, 2020 | A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory,... |
| CVE-2020-1425 | HIGH | 7.8 | 9.0% | Jul 27, 2020 | A remoted code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory... |
| CVE-2020-10609 | HIGH | 7.5 | 1.5% | Jul 27, 2020 | Grundfos CIM 500 v06.16.00 stores plaintext credentials, which may allow sensitive information to be read or allow modif... |
| CVE-2020-7017 | MEDIUM | 6.7 | 1.2% | Jul 27, 2020 | In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who i... |
| CVE-2020-7016 | MEDIUM | 4.8 | 1.1% | Jul 27, 2020 | Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a ... |
| CVE-2020-15120 | MEDIUM | 4.9 | 1.0% | Jul 27, 2020 | In "I hate money" before version 4.1.5, an authenticated member of one project can modify and delete members of another ... |
| CVE-2020-15103 | LOW | 3.5 | 1.5% | Jul 27, 2020 | In FreeRDP less than or equal to 2.1.2, an integer overflow exists due to missing input sanitation in rdpegfx channel. A... |
| CVE-2020-4498 | MEDIUM | 4.4 | 0.3% | Jul 27, 2020 | IBM MQ Appliance 9.1 LTS and 9.1 CD could allow a local privileged user to obtain highly sensitve information due to inc... |
| CVE-2020-4408 | MEDIUM | 4.6 | 0.3% | Jul 27, 2020 | The IBM QRadar Advisor 1.1 through 2.5.2 with Watson App for IBM QRadar SIEM does not adequately mask all passwords duri... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now