2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-9296 | CRITICAL | 9.8 | 2.0% | Jun 16, 2020 | Netflix Titus uses Java Bean Validation (JSR 380) custom constraint validators. When building custom constraint violatio... |
| CVE-2020-8544 | MEDIUM | 6.5 | 1.1% | Jun 16, 2020 | OX App Suite through 7.10.3 allows SSRF. |
| CVE-2020-8543 | HIGH | 7.5 | 2.0% | Jun 16, 2020 | OX App Suite through 7.10.3 has Improper Input Validation. |
| CVE-2020-8542 | MEDIUM | 5.4 | 1.2% | Jun 16, 2020 | OX App Suite through 7.10.3 allows XSS. |
| CVE-2020-8541 | MEDIUM | 6.5 | 1.0% | Jun 16, 2020 | OX App Suite through 7.10.3 allows XXE attacks. |
| CVE-2020-4320 | MEDIUM | 6.5 | 0.8% | Jun 16, 2020 | IBM MQ Appliance and IBM MQ AMQP Channels 8.0, 9.0 LTS, 9.1 LTS, and 9.1 CD do not correctly block or allow clients base... |
| CVE-2020-4310 | HIGH | 7.5 | 1.7% | Jun 16, 2020 | IBM MQ and MQ Appliance 7.1, 7.5, 8.0, 9.0 LTS, 9.1 LTS, and 9.1 C are vulnerable to a denial of service attack due to a... |
| CVE-2020-12494 | MEDIUM | 5.3 | 1.0% | Jun 16, 2020 | Beckhoff's TwinCAT RT network driver for Intel 8254x and 8255x is providing EtherCAT functionality. The driver implement... |
| CVE-2020-11841 | MEDIUM | 4.3 | 0.7% | Jun 16, 2020 | Unauthorized information disclosure vulnerability in Micro Focus ArcSight Management Center product, Affecting versions ... |
| CVE-2020-11840 | MEDIUM | 4.3 | 0.7% | Jun 16, 2020 | Unauthorized information disclosure vulnerability in Micro Focus ArcSight Management Center product, Affecting versions ... |
| CVE-2020-11838 | MEDIUM | 5.4 | 0.5% | Jun 16, 2020 | Cross Site Scripting (XSS) vulnerability in Micro Focus ArcSight Management Center product, Affecting versions 2.6.1, 2.... |
| CVE-2020-0235 | CRITICAL | 9.8 | 0.4% | Jun 16, 2020 | In crus_sp_shared_ioctl we first copy 4 bytes from userdata into "size" variable, and then use that variable as the size... |
| CVE-2020-0234 | HIGH | 7.8 | 0.1% | Jun 16, 2020 | In crus_afe_get_param of msm-cirrus-playback.c, there is a possible out of bounds write due to a missing bounds check. T... |
| CVE-2020-0232 | CRITICAL | 9.8 | 0.4% | Jun 16, 2020 | Function abc_pcie_issue_dma_xfer_sync creates a transfer object, adds it to the session object then continues to work wi... |
| CVE-2020-0223 | CRITICAL | 9.8 | 0.4% | Jun 16, 2020 | This is an unbounded write into kernel global memory, via a user-controlled buffer size.Product: AndroidVersions: Androi... |
| CVE-2020-13431 | HIGH | 7.8 | 0.3% | Jun 16, 2020 | I2P before 0.9.46 allows local users to gain privileges via a Trojan horse I2PSvc.exe file because of weak permissions o... |
| CVE-2020-4051 | MEDIUM | 5.4 | 1.2% | Jun 15, 2020 | In Dijit before versions 1.11.11, and greater than or equal to 1.12.0 and less than 1.12.9, and greater than or equal to... |
| CVE-2020-5358 | HIGH | 7.8 | 0.2% | Jun 15, 2020 | Dell Encryption versions prior to 10.7 and Dell Endpoint Security Suite versions prior to 2.7 contain a privilege escala... |
| CVE-2020-14163 | HIGH | 7.5 | 1.3% | Jun 15, 2020 | An issue was discovered in ecma/operations/ecma-container-object.c in JerryScript 2.2.0. Operations with key/value pairs... |
| CVE-2020-5755 | HIGH | 7.8 | 0.5% | Jun 15, 2020 | Webroot endpoint agents prior to version v9.0.28.48 did not protect the "%PROGRAMDATA%\WrData\PKG" directory against ren... |
| CVE-2020-5754 | CRITICAL | 9.1 | 1.5% | Jun 15, 2020 | Webroot endpoint agents prior to version v9.0.28.48 allows remote attackers to trigger a type confusion vulnerability ov... |
| CVE-2020-5742 | HIGH | 8.8 | 1.4% | Jun 15, 2020 | Improper Access Control in Plex Media Server prior to June 15, 2020 allows any origin to execute cross-origin applicatio... |
| CVE-2020-12019 | CRITICAL | 9.8 | 2.2% | Jun 15, 2020 | WebAccess Node Version 8.4.4 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to re... |
| CVE-2020-12005 | HIGH | 7.5 | 1.8% | Jun 15, 2020 | FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Versio... |
| CVE-2020-12003 | HIGH | 7.5 | 5.2% | Jun 15, 2020 | FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Versio... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now