2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-9426MEDIUM6.1OX Guard 2.10.3 and earlier allows XSS.
CVE-2020-9075MEDIUM6.5Huawei products Secospace USG6300;USG6300E with versions of V500R001C30,V500R001C50,V500R001C60,V500R001C80,V500R005C00,...
CVE-2020-1825MEDIUM6.5FusionAccess with versions earlier than 6.5.1.SPC002 have a Denial of Service (DoS) vulnerability. Due to insufficient v...
CVE-2020-1813MEDIUM6.8HUAWEI P30 smart phone with versions earlier than 10.1.0.135(C00E135R2P11) have an improper authentication vulnerability...
CVE-2020-14011CRITICAL9.8Lansweeper 6.0.x through 7.2.x has a default installation in which the admin password is configured for the admin accoun...
CVE-2020-8675MEDIUM6.8Insufficient control flow management in firmware build and signing tool for Intel(R) Innovation Engine before version 1....
CVE-2020-8674MEDIUM5.3Out-of-bounds read in DHCPv6 subsystem in Intel(R) AMT and Intel(R)ISM versions before 11.8.77, 11.12.77, 11.22.77, 12.0...
CVE-2020-4494HIGH7.5IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum P...
CVE-2020-4477MEDIUM6.5IBM Spectrum Protect Plus 10.1.0 through 10.1.5 discloses highly sensitive information in plain text in the virgo log fi...
CVE-2020-4471MEDIUM6.5IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow an unauthenticated attacker to cause a denial of service or ...
CVE-2020-4470HIGH8IBM Spectrum Protect Plus 10.1.0 through 10.1.5 Administrative Console could allow an authenticated attacker to upload a...
CVE-2020-4469CRITICAL9.8IBM Spectrum Protect Plus 10.1.0 through 10.1.5 could allow a remote attacker to execute arbitrary code on the system. B...
CVE-2020-4406MEDIUM5.4IBM Spectrum Protect Client 8.1.7.0 through 8.1.9.1 (Linux and Windows), 8.1.9.0 trough 8.1.9.1 (AIX) and IBM Spectrum P...
CVE-2020-4216CRITICAL9.8IBM Spectrum Protect Plus 10.1.0 through 10.1.5 contains hard-coded credentials, such as a password or cryptographic key...
CVE-2020-14146MEDIUM5.4KumbiaPHP through 1.1.1, in Development mode, allows XSS via the public/pages/kumbia PATH_INFO.
CVE-2020-0597HIGH7.5Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 14.0.33 may allow an unauthenticat...
CVE-2020-0596HIGH7.5Improper input validation in DHCPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22....
CVE-2020-0595CRITICAL9.8Use after free in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12.0.6...
CVE-2020-0594CRITICAL9.8Out-of-bounds read in IPv6 subsystem in Intel(R) AMT and Intel(R) ISM versions before 11.8.77, 11.12.77, 11.22.77 and 12...
CVE-2020-0586HIGH7.8Improper initialization in subsystem for Intel(R) SPS versions before SPS_E3_04.01.04.109.0 and SPS_E3_04.08.04.070.0 ma...
CVE-2020-0566MEDIUM6.8Improper Access Control in subsystem for Intel(R) TXE versions before 3.175 and 4.0.25 may allow an unauthenticated user...
CVE-2020-0545MEDIUM4.4Integer overflow in subsystem for Intel(R) CSME versions before 11.8.77, 11.12.77, 11.22.77 and Intel(R) TXE versions be...
CVE-2020-0543MEDIUM5.5Incomplete cleanup from specific special register read operations in some Intel(R) Processors may allow an authenticated...
CVE-2020-0542HIGH7.8Improper buffer restrictions in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may al...
CVE-2020-0541MEDIUM6.7Out-of-bounds write in subsystem for Intel(R) CSME versions before 12.0.64, 13.0.32, 14.0.33 and 14.5.12 may allow a pri...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now