2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-11437MEDIUM4.3LibreHealth EMR v2.0.0 is affected by SQL injection allowing low-privilege authenticated users to enumerate the database...
CVE-2020-11436CRITICAL9LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other us...
CVE-2020-10284CRITICAL9.1No authentication is required to control the robot inside the network, moreso the latest available user manual shows an ...
CVE-2020-15717MEDIUM6.1RosarioSIS 6.7.2 is vulnerable to XSS, caused by improper validation of user-supplied input by the Search.inc.php script...
CVE-2020-15716MEDIUM6.1RosarioSIS 6.7.2 is vulnerable to XSS, caused by improper validation of user-supplied input by the Preferences.php scrip...
CVE-2020-2984HIGH7.1Vulnerability in the Oracle Configuration Manager product of Oracle Enterprise Manager (component: Discovery and collect...
CVE-2020-2983HIGH7.1Vulnerability in the Oracle Data Masking and Subsetting product of Oracle Enterprise Manager (component: Data Masking). ...
CVE-2020-2982HIGH7.1Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Enterprise Config...
CVE-2020-2981HIGH7Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version that is affected is Prior to 18.1...
CVE-2020-2978MEDIUM4.1Vulnerability in the Oracle Database - Enterprise Edition component of Oracle Database Server. Supported versions that a...
CVE-2020-2977MEDIUM4.6Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2976MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2975MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2974MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2973MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2972MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2971MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2969MEDIUM6.6Vulnerability in the Data Pump component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 1...
CVE-2020-2968HIGH8Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12....
CVE-2020-2967HIGH7.5Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Web Services). Supported ver...
CVE-2020-2966MEDIUM5.4Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Console). Supported versions...
CVE-2020-2562MEDIUM6.1Vulnerability in the Primavera Portfolio Management product of Oracle Construction and Engineering (component: Investor ...
CVE-2020-2513MEDIUM5.4Vulnerability in the Oracle Application Express component of Oracle Database Server. Supported versions that are affecte...
CVE-2020-2228HIGH8.8Jenkins Gitlab Authentication Plugin 1.5 and earlier does not perform group authorization checks properly, resulting in ...
CVE-2020-2227MEDIUM5.4Jenkins Deployer Framework Plugin 1.2 and earlier does not escape the URL displayed in the build home page, resulting in...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now