2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9622 | MEDIUM | 5.5 | 2.8% | Jun 26, 2020 | Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have an out-of-bounds read vulnerability. Successful e... |
| CVE-2020-9621 | HIGH | 7.8 | 7.5% | Jun 26, 2020 | Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have a heap overflow vulnerability. Successful exploit... |
| CVE-2020-9620 | HIGH | 7.8 | 7.7% | Jun 26, 2020 | Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have a heap overflow vulnerability. Successful exploit... |
| CVE-2020-9617 | MEDIUM | 5.5 | 2.8% | Jun 26, 2020 | Adobe Premiere Rush versions 1.5.8 and earlier have an out-of-bounds read vulnerability. Successful exploitation could l... |
| CVE-2020-9616 | MEDIUM | 5.5 | 2.7% | Jun 26, 2020 | Adobe Premiere Pro versions 14.1 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lea... |
| CVE-2020-9590 | HIGH | 7.8 | 43.7% | Jun 26, 2020 | Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have a heap overflow vulnerability. Successful exploit... |
| CVE-2020-9589 | HIGH | 7.8 | 7.6% | Jun 26, 2020 | Adobe DNG Software Development Kit (SDK) 1.5 and earlier versions have a heap overflow vulnerability. Successful exploit... |
| CVE-2020-9586 | HIGH | 7.8 | 7.9% | Jun 26, 2020 | Adobe Character Animator versions 3.2 and earlier have a buffer overflow vulnerability. Successful exploitation could le... |
| CVE-2020-9047 | HIGH | 7.2 | 7.8% | Jun 26, 2020 | A vulnerability exists that could allow the execution of unauthorized code or operating system commands on systems runni... |
| CVE-2020-15351 | HIGH | 7.8 | 0.3% | Jun 26, 2020 | IDrive before 6.7.3.19 on Windows installs by default to %PROGRAMFILES(X86)%\IDriveWindows with weak folder permissions ... |
| CVE-2020-14955 | MEDIUM | 5.5 | 0.4% | Jun 26, 2020 | In Jiangmin Antivirus 16.0.13.129, the driver file (KVFG.sys) allows local users to cause a denial of service (BSOD) or ... |
| CVE-2020-14477 | MEDIUM | 4.4 | 0.3% | Jun 26, 2020 | In Philips Ultrasound ClearVue Versions 3.2 and prior, Ultrasound CX Versions 5.0.2 and prior, Ultrasound EPIQ/Affiniti ... |
| CVE-2020-13891 | HIGH | 7.5 | 1.1% | Jun 26, 2020 | An issue was discovered in Mattermost Mobile Apps before 1.31.2 on iOS. Unintended third-party servers could sometimes o... |
| CVE-2020-11996 | HIGH | 7.5 | 26.7% | Jun 26, 2020 | A specially crafted sequence of HTTP/2 requests sent to Apache Tomcat 10.0.0-M1 to 10.0.0-M5, 9.0.0.M1 to 9.0.35 and 8.5... |
| CVE-2020-10628 | HIGH | 7.5 | 0.7% | Jun 26, 2020 | ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes unencrypted passwords ... |
| CVE-2020-10624 | HIGH | 7.5 | 0.7% | Jun 26, 2020 | ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes a session token on the... |
| CVE-2020-10769 | MEDIUM | 5.5 | 0.5% | Jun 26, 2020 | A buffer over-read flaw was found in RH kernel versions before 5.0 in crypto_authenc_extractkeys in crypto/authenc.c in ... |
| CVE-2020-10727 | MEDIUM | 5.5 | 0.7% | Jun 26, 2020 | A flaw was found in ActiveMQ Artemis management API from version 2.7.0 up until 2.12.0, where a user inadvertently store... |
| CVE-2020-15336 | HIGH | 7.5 | 0.9% | Jun 26, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has no authentication for /cnr requests. |
| CVE-2020-15335 | HIGH | 7.5 | 0.9% | Jun 26, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has no authentication for /registerCpe requests. |
| CVE-2020-10753 | MEDIUM | 6.5 | 1.6% | Jun 26, 2020 | A flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway). The vulnerability is related to the injectio... |
| CVE-2020-4565 | MEDIUM | 5.9 | 1.2% | Jun 26, 2020 | IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow an attacker to obtain sensitive information due to insecure ... |
| CVE-2020-4223 | MEDIUM | 5.4 | 0.6% | Jun 26, 2020 | IBM Maximo Asset Management 7.6.0.10 and 7.6.1.1 is vulnerable to cross-site scripting. This vulnerability allows users ... |
| CVE-2020-15348 | CRITICAL | 9.8 | 1.8% | Jun 26, 2020 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows use of live/CPEManager/AXCampaignManager/delete_cpes_by_ids?cpe_ids= f... |
| CVE-2020-15017 | MEDIUM | 6.1 | 0.6% | Jun 26, 2020 | NeDi 1.9C is vulnerable to reflected cross-site scripting. The Devices-Config.php file improperly validates user input. ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now