2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-12001 | CRITICAL | 9.8 | 11.5% | Jun 15, 2020 | FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Versio... |
| CVE-2020-11999 | HIGH | 8.1 | 2.8% | Jun 15, 2020 | FactoryTalk Linx versions 6.00, 6.10, and 6.11, RSLinx Classic v4.11.00 and prior,Connected Components Workbench: Versio... |
| CVE-2020-11969 | CRITICAL | 9.8 | 4.1% | Jun 15, 2020 | If Apache TomEE is configured to use the embedded ActiveMQ broker, and the broker URI includes the useJMX=true parameter... |
| CVE-2020-14159 | HIGH | 8.8 | 1.9% | Jun 15, 2020 | By using an Automate API in ConnectWise Automate before 2020.5.178, a remote authenticated user could execute commands a... |
| CVE-2020-13652 | MEDIUM | 6.1 | 0.8% | Jun 15, 2020 | An issue was discovered in DigDash 2018R2 before p20200528, 2019R1 before p20200528, 2019R2 before p20200430, and 2020R1... |
| CVE-2020-13651 | HIGH | 7.8 | 0.9% | Jun 15, 2020 | An issue was discovered in DigDash 2018R2 before p20200528, 2019R1 before p20200421, and 2019R2 before p20200430. It all... |
| CVE-2020-13650 | HIGH | 7.5 | 1.0% | Jun 15, 2020 | An issue was discovered in DigDash 2018R2 before p20200210 and 2019R1 before p20200210. The login page is vulnerable to ... |
| CVE-2020-14156 | HIGH | 8.8 | 1.8% | Jun 15, 2020 | user_channel/passwd_mgr.cpp in OpenBMC phosphor-host-ipmid before 2020-04-03 does not ensure that /etc/ipmi-pass has str... |
| CVE-2020-14149 | HIGH | 7.5 | 2.3% | Jun 15, 2020 | In uftpd before 2.12, handle_CWD in ftpcmd.c mishandled the path provided by the user, causing a NULL pointer dereferenc... |
| CVE-2020-14148 | HIGH | 7.5 | 2.6% | Jun 15, 2020 | The Server-Server protocol implementation in ngIRCd before 26~rc2 allows an out-of-bounds access, as demonstrated by the... |
| CVE-2020-14147 | HIGH | 7.7 | 3.1% | Jun 15, 2020 | An integer overflow in the getnum function in lua_struct.c in Redis before 6.0.3 allows context-dependent attackers with... |
| CVE-2020-14155 | MEDIUM | 5.3 | 4.2% | Jun 15, 2020 | libpcre in PCRE before 8.44 allows an integer overflow via a large number after a (?C substring. |
| CVE-2020-14154 | MEDIUM | 4.8 | 1.1% | Jun 15, 2020 | Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an e... |
| CVE-2020-14153 | HIGH | 7.1 | 1.1% | Jun 15, 2020 | In IJG JPEG (aka libjpeg) from version 8 through 9c, jdhuff.c has an out-of-bounds array read for certain table pointers... |
| CVE-2020-14152 | HIGH | 7.1 | 1.5% | Jun 15, 2020 | In IJG JPEG (aka libjpeg) before 9d, jpeg_mem_available() in jmemnobs.c in djpeg does not honor the max_memory_to_use se... |
| CVE-2020-14151 | — | — | — | Jun 15, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11813. Reason: This candidate is a duplicate of ... |
| CVE-2020-14150 | MEDIUM | 5.5 | 0.4% | Jun 15, 2020 | GNU Bison before 3.5.4 allows attackers to cause a denial of service (application crash). NOTE: there is a risk only if ... |
| CVE-2020-14034 | CRITICAL | 9.8 | 2.3% | Jun 15, 2020 | An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_get_codec_from_pt in utils.c ha... |
| CVE-2020-14033 | CRITICAL | 9.8 | 1.9% | Jun 15, 2020 | An issue was discovered in janus-gateway (aka Janus WebRTC Server) through 0.10.0. janus_streaming_rtsp_parse_sdp in plu... |
| CVE-2020-9076 | MEDIUM | 6.8 | 0.6% | Jun 15, 2020 | HUAWEI P30;HUAWEI P30 Pro;Tony-AL00B smartphones with versions earlier than 10.1.0.135(C00E135R2P11); versions earlier t... |
| CVE-2020-3961 | HIGH | 7.8 | 0.4% | Jun 15, 2020 | VMware Horizon Client for Windows (prior to 5.4.3) contains a privilege escalation vulnerability due to folder permissio... |
| CVE-2020-14054 | CRITICAL | 9.8 | 1.4% | Jun 15, 2020 | SOKKIA GNR5 Vanguard WEB version 1.2 (build: 91f2b2c3a04d203d79862f87e2440cb7cefc3cd3) and hardware version 212 allows r... |
| CVE-2020-13999 | MEDIUM | 5.5 | 1.2% | Jun 15, 2020 | ScaleViewPortExtEx in libemf.cpp in libEMF (aka ECMA-234 Metafile Library) 1.0.12 allows an integer overflow and denial ... |
| CVE-2020-13150 | HIGH | 7.8 | 0.3% | Jun 15, 2020 | D-link DSL-2750U ISL2750UEME3.V1E devices allow approximately 90 seconds of access to the control panel, after a restart... |
| CVE-2020-9427 | MEDIUM | 5 | 1.1% | Jun 15, 2020 | OX Guard 2.10.3 and earlier allows SSRF. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now