2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-12883CRITICAL9.1Buffer over-reads were discovered in the CoAP library in Arm Mbed OS 5.15.3. The CoAP parser is responsible for parsing ...
CVE-2020-14446MEDIUM6.1An issue was discovered in WSO2 Identity Server through 5.10.0 and WSO2 IS as Key Manager through 5.10.0. An open redire...
CVE-2020-14445MEDIUM5.4An issue was discovered in WSO2 Identity Server through 5.9.0 and WSO2 IS as Key Manager through 5.9.0. A potential Refl...
CVE-2020-14444MEDIUM5.4An issue was discovered in WSO2 Identity Server through 5.9.0 and WSO2 IS as Key Manager through 5.9.0. A potential Refl...
CVE-2020-14443HIGH8.8A SQL injection vulnerability in accountancy/customer/card.php in Dolibarr 11.0.3 allows remote authenticated users to e...
CVE-2020-13882MEDIUM4.2CISOfy Lynis before 3.0.0 has Incorrect Access Control because of a TOCTOU race condition. The routine to check the log ...
CVE-2020-14442HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14441HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14440HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14439HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14438HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14437HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14436HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects RBK752 before 3.2...
CVE-2020-14435HIGH8.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects SRK60 before 2.5....
CVE-2020-14434MEDIUM6.8Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK752 before 3.2.15.25...
CVE-2020-14433MEDIUM6.8Certain NETGEAR devices are affected by command injection by an authenticated user. This affects RBK852 before 3.2.15.25...
CVE-2020-14432HIGH8.8Certain NETGEAR devices are affected by CSRF. This affects RBK752 before 3.2.15.25, RBK753 before 3.2.15.25, RBK753S bef...
CVE-2020-14431HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, ...
CVE-2020-14430HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, ...
CVE-2020-14429HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects MK62 before 1.0.4.92, MK6...
CVE-2020-14428HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, ...
CVE-2020-14427HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, ...
CVE-2020-14426HIGH8.8Certain NETGEAR devices are affected by disclosure of administrative credentials. This affects RBK752 before 3.2.15.25, ...
CVE-2020-11503CRITICAL9.8A heap-based buffer overflow in the awarrensmtp component of Sophos XG Firewall v17.5 MR11 and older potentially allows ...
CVE-2020-13640CRITICAL9.8A SQL injection issue in the gVectors wpDiscuz plugin 5.3.5 and earlier for WordPress allows remote attackers to execute...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now