2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-4042MEDIUM6.8Bareos before version 19.2.8 and earlier allows a malicious client to communicate with the director without knowledge of...
CVE-2020-11061HIGH7.4In Bareos Director less than or equal to 16.2.10, 17.2.9, 18.2.8, and 19.2.7, a heap overflow allows a malicious client ...
CVE-2020-11081HIGH8.2osquery before version 4.4.0 enables a privilege escalation vulnerability. If a Window system is configured with a PATH ...
CVE-2020-6114HIGH7.2An exploitable SQL injection vulnerability exists in the Admin Reports functionality of Glacies IceHRM v26.6.0.OS (Commi...
CVE-2020-15504CRITICAL9.8A SQL injection vulnerability in the user and admin web interfaces of Sophos XG Firewall v18.0 MR1 and older potentially...
CVE-2020-8199HIGH7.8Improper access control in Citrix ADC Gateway Linux client versions before 1.0.0.137 results in local privilege escalati...
CVE-2020-8198MEDIUM6.1Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.1...
CVE-2020-8197HIGH8.8Privilege escalation vulnerability on Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, ...
CVE-2020-8196MEDIUM4.3Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 ...
CVE-2020-8195MEDIUM6.5Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.1...
CVE-2020-8194MEDIUM6.5Reflected code injection in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14...
CVE-2020-8193MEDIUM6.5Improper access control in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 ...
CVE-2020-8191MEDIUM6.1Improper input validation in Citrix ADC and Citrix Gateway versions before 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.1...
CVE-2020-8190HIGH7.5Incorrect file permissions in Citrix ADC and Citrix Gateway before versions 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64....
CVE-2020-8187HIGH7.5Improper input validation in Citrix ADC and Citrix Gateway versions before 11.1-63.9 and 12.0-62.10 allows unauthenticat...
CVE-2020-8186CRITICAL9.8A command injection vulnerability in the `devcert` module may lead to remote code execution when users of the module pas...
CVE-2020-8181MEDIUM4.3A missing file type check in Nextcloud Contacts 3.2.0 allowed a malicious user to upload any file as avatars.
CVE-2020-13983Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2020-14159. Reason: This candidate is a reservation d...
CVE-2020-9260MEDIUM6.5HUAWEI P30 and HUAWEI P30 Pro smartphones with versions earlier than 10.1.0.123(C432E22R2P5) and versions earlier than 1...
CVE-2020-9258MEDIUM5.5HUAWEI P30 smartphone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper input verification vulnerabil...
CVE-2020-7815CRITICAL9.8XPLATFORM v9.2.260 and eariler versions contain a vulnerability that could allow remote files to be downloaded by settin...
CVE-2020-3974HIGH7.8VMware Fusion (11.x before 11.5.5), VMware Remote Console for Mac (11.x and prior before 11.2.0 ) and Horizon Client for...
CVE-2020-7814CRITICAL9.8RAONWIZ v2018.0.2.50 and eariler versions contains a vulnerability that could allow remote files to be downloaded and ex...
CVE-2020-5607MEDIUM6.1Open redirect vulnerability in SHIRASAGI v1.13.1 and earlier allows remote attackers to redirect users to arbitrary web ...
CVE-2020-4305HIGH8.8IBM InfoSphere Information Server 11.3, 11.5, and 11.7 could allow a remote attacker to execute arbitrary code on the sy...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now