2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15337 | MEDIUM | 5.3 | 0.8% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a "Use of GET Request Method With Sensitive Query Strings" issue for /reg... |
| CVE-2020-15334 | MEDIUM | 5.3 | 0.8% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows escape-sequence injection into the /var/log/axxmpp.log file. |
| CVE-2020-15333 | MEDIUM | 5.3 | 1.0% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 allows attackers to discover accounts via MySQL "select * from Administrator_... |
| CVE-2020-15332 | CRITICAL | 9.8 | 0.9% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak /opt/axess/etc/default/axess permissions. |
| CVE-2020-15331 | CRITICAL | 9.8 | 0.9% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded OAUTH_SECRET_KEY in /opt/axess/etc/default/axess. |
| CVE-2020-15330 | MEDIUM | 5.3 | 0.6% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded APP_KEY in /opt/axess/etc/default/axess. |
| CVE-2020-15329 | MEDIUM | 5.3 | 0.8% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak Data.fs permissions. |
| CVE-2020-15328 | MEDIUM | 5.3 | 0.8% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has weak /opt/axess/var/blobstorage/ permissions. |
| CVE-2020-15327 | HIGH | 7.5 | 1.0% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 uses ZODB storage without authentication. |
| CVE-2020-15326 | MEDIUM | 5.3 | 0.5% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded certificate for Ejabberd in ejabberd.pem. |
| CVE-2020-15325 | MEDIUM | 5.3 | 0.6% | Sep 29, 2022 | Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has a hardcoded Erlang cookie for ejabberd replication. |
| CVE-2020-36521 | HIGH | 7.1 | 0.4% | Sep 23, 2022 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in iCloud for Windows 11.4, iOS ... |
| CVE-2020-36604 | HIGH | 8.1 | 0.9% | Sep 23, 2022 | hoek before 8.5.1 and 9.x before 9.0.3 allows prototype poisoning in the clone function. |
| CVE-2020-36602 | MEDIUM | 6.1 | 0.3% | Sep 20, 2022 | There is an out-of-bounds read and write vulnerability in some headset products. An unauthenticated attacker gets the de... |
| CVE-2020-25491 | MEDIUM | 6.1 | 0.5% | Sep 16, 2022 | 6Kare Emakin 5.0.341.0 is affected by Cross Site Scripting (XSS) via the /rpc/membership/setProfile DisplayName field, w... |
| CVE-2020-36601 | HIGH | 7.5 | 0.5% | Sep 16, 2022 | Out-of-bounds write vulnerability in the kernel modules. Successful exploitation of this vulnerability may cause a panic... |
| CVE-2020-36600 | HIGH | 7.5 | 0.5% | Sep 16, 2022 | Out-of-bounds write vulnerability in the power consumption module. Successful exploitation of this vulnerability may cau... |
| CVE-2020-23560 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000001bcab. |
| CVE-2020-23559 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000007d7f. |
| CVE-2020-23558 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000007f4b. |
| CVE-2020-23557 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000755d. |
| CVE-2020-23556 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e28. |
| CVE-2020-23555 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e6e. |
| CVE-2020-23554 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e20. |
| CVE-2020-23553 | HIGH | 7.8 | 0.3% | Sep 16, 2022 | IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007d33. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now