2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15350 | CRITICAL | 9.8 | 1.5% | Jul 7, 2020 | RIOT 2020.04 has a buffer overflow in the base64 decoder. The decoding function base64_decode() uses an output buffer es... |
| CVE-2020-15515 | HIGH | 8.8 | 1.9% | Jul 7, 2020 | The turn extension through 0.3.2 for TYPO3 allows Remote Code Execution. |
| CVE-2020-15035 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15034 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15033 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15032 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15031 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15030 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15029 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15028 | MEDIUM | 5.4 | 0.6% | Jul 7, 2020 | NeDi 1.9C is vulnerable to a cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary ... |
| CVE-2020-11882 | MEDIUM | 6.1 | 1.0% | Jul 7, 2020 | The O2 Business application 1.2.0 for Android exposes the canvasm.myo2.SplashActivity activity to other applications. Th... |
| CVE-2020-15037 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15036 | MEDIUM | 5.4 | 0.5% | Jul 7, 2020 | NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary Ja... |
| CVE-2020-15584 | MEDIUM | 5.5 | 0.3% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with Q(10.0) software. Attackers can trigger an out-of-bounds access a... |
| CVE-2020-15583 | MEDIUM | 5.5 | 0.2% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. StickerProvider allows dire... |
| CVE-2020-15582 | MEDIUM | 5.5 | 0.3% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) (Exynos 7885 chipsets) software. The Bluetooth... |
| CVE-2020-15581 | MEDIUM | 5.3 | 0.3% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The kernel logging feature ... |
| CVE-2020-15580 | MEDIUM | 5.5 | 0.1% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factor... |
| CVE-2020-15579 | HIGH | 7.5 | 0.4% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. Attackers can bypass Factor... |
| CVE-2020-15578 | MEDIUM | 5.5 | 0.1% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with O(8.x) software. FactoryCamera does not properly restrict runtime... |
| CVE-2020-15577 | MEDIUM | 5.5 | 0.1% | Jul 7, 2020 | An issue was discovered on Samsung mobile devices with P(9.0) and Q(10.0) software. Cameralyzer allows attackers to writ... |
| CVE-2020-15576 | HIGH | 7.5 | 1.5% | Jul 7, 2020 | SolarWinds Serv-U File Server before 15.2.1 allows information disclosure via an HTTP response. |
| CVE-2020-15575 | MEDIUM | 6.1 | 1.5% | Jul 7, 2020 | SolarWinds Serv-U File Server before 15.2.1 allows XSS as demonstrated by Tenable Scan, aka Case Number 00484194. |
| CVE-2020-15574 | HIGH | 7.5 | 1.5% | Jul 7, 2020 | SolarWinds Serv-U File Server before 15.2.1 mishandles the Same-Site cookie attribute, aka Case Number 00331893. |
| CVE-2020-15573 | MEDIUM | 6.1 | 1.5% | Jul 7, 2020 | SolarWinds Serv-U File Server before 15.2.1 has a "Cross-script vulnerability," aka Case Numbers 00041778 and 00306421. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now