2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15468 | CRITICAL | 9.8 | 2.7% | Jul 1, 2020 | Persian VIP Download Script 1.0 allows SQL Injection via the cart_edit.php active parameter. |
| CVE-2020-4029 | MEDIUM | 4.3 | 1.4% | Jul 1, 2020 | The /rest/project-templates/1.0/createshared resource in Atlassian Jira Server and Data Center before version 8.5.5, fro... |
| CVE-2020-4027 | MEDIUM | 4.7 | 1.5% | Jul 1, 2020 | Affected versions of Atlassian Confluence Server and Data Center allowed remote attackers with system administration per... |
| CVE-2020-4025 | MEDIUM | 4.8 | 0.9% | Jul 1, 2020 | The attachment download resource in Atlassian Jira Server and Data Center The attachment download resource in Atlassian ... |
| CVE-2020-4024 | MEDIUM | 5.4 | 0.9% | Jul 1, 2020 | The attachment download resource in Atlassian Jira Server and Data Center before 8.5.5, and from 8.6.0 before 8.8.2, and... |
| CVE-2020-4022 | MEDIUM | 6.1 | 1.1% | Jul 1, 2020 | The attachment download resource in Atlassian Jira Server and Data Center before 8.5.5, and from 8.6.0 before 8.8.2, and... |
| CVE-2020-14169 | MEDIUM | 6.1 | 0.8% | Jul 1, 2020 | The quick search component in Atlassian Jira Server and Data Center before 8.9.1 allows remote attackers to inject arbit... |
| CVE-2020-14168 | MEDIUM | 5.9 | 1.7% | Jul 1, 2020 | The email client in Jira Server and Data Center before version 7.13.16, from 8.5.0 before 8.5.7, from 8.8.0 before 8.8.2... |
| CVE-2020-14167 | HIGH | 7.5 | 2.1% | Jul 1, 2020 | The MessageBundleResource resource in Jira Server and Data Center before version 7.13.4, from 8.5.0 before 8.5.5, from 8... |
| CVE-2020-14166 | MEDIUM | 4.8 | 1.9% | Jul 1, 2020 | The /servicedesk/customer/portals resource in Jira Service Desk Server and Data Center before version 4.10.0 allows remo... |
| CVE-2020-14165 | MEDIUM | 5.3 | 1.0% | Jul 1, 2020 | The UniversalAvatarResource.getAvatars resource in Jira Server and Data Center before version 8.9.0 allows remote attack... |
| CVE-2020-14164 | MEDIUM | 6.1 | 0.7% | Jul 1, 2020 | The WYSIWYG editor resource in Jira Server and Data Center before version 8.8.2 allows remote attackers to inject arbitr... |
| CVE-2020-5973 | MEDIUM | 4.4 | 0.4% | Jun 30, 2020 | NVIDIA Virtual GPU Manager and the guest drivers contain a vulnerability in vGPU plugin, in which there is the potential... |
| CVE-2020-5972 | HIGH | 7.1 | 0.3% | Jun 30, 2020 | NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which local pointer variables are not initial... |
| CVE-2020-5971 | HIGH | 7.8 | 0.4% | Jun 30, 2020 | NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which the software reads from a buffer by usi... |
| CVE-2020-5970 | HIGH | 7.1 | 0.3% | Jun 30, 2020 | NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, wh... |
| CVE-2020-5969 | MEDIUM | 6.3 | 0.2% | Jun 30, 2020 | NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which it validates a shared resource before u... |
| CVE-2020-5968 | HIGH | 7.8 | 0.4% | Jun 30, 2020 | NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which the software does not restrict or incor... |
| CVE-2020-14947 | HIGH | 8.8 | 19.5% | Jun 30, 2020 | OCS Inventory NG 2.7 allows Remote Command Execution via shell metacharacters to require/commandLine/CommandLine.php bec... |
| CVE-2020-9414 | HIGH | 8.8 | 1.7% | Jun 30, 2020 | The MFT admin service component of TIBCO Software Inc.'s TIBCO Managed File Transfer Command Center and TIBCO Managed Fi... |
| CVE-2020-9413 | CRITICAL | 9.6 | 1.3% | Jun 30, 2020 | The MFT Browser file transfer client and MFT Browser admin client components of TIBCO Software Inc.'s TIBCO Managed File... |
| CVE-2020-7049 | HIGH | 7.3 | 0.9% | Jun 30, 2020 | Nozomi Networks OS before 19.0.4 allows /#/network?tab=network_node_list.html CSV Injection. |
| CVE-2020-14474 | HIGH | 7.5 | 2.5% | Jun 30, 2020 | The Cellebrite UFED physical device 5.0 through 7.5.0.845 relies on key material hardcoded within both the executable co... |
| CVE-2020-14059 | MEDIUM | 6.5 | 4.4% | Jun 30, 2020 | An issue was discovered in Squid 5.x before 5.0.3. Due to an Incorrect Synchronization, a Denial of Service can occur wh... |
| CVE-2020-14058 | HIGH | 7.5 | 2.6% | Jun 30, 2020 | An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due to use of a potentially dangerous function, Squid... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now