2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-24660 | CRITICAL | 9.8 | 2.3% | Sep 14, 2020 | An issue was discovered in LemonLDAP::NG through 2.0.8, when NGINX is used. An attacker may bypass URL-based access cont... |
| CVE-2020-25283 | CRITICAL | 9.8 | 0.5% | Sep 11, 2020 | An issue was discovered on LG mobile devices with Android OS 8.0, 8.1, 9.0, and 10 software. BT manager allows attackers... |
| CVE-2020-25282 | CRITICAL | 9.8 | 0.4% | Sep 11, 2020 | An issue was discovered on LG mobile devices with Android OS 10 software. The lguicc software (for the LG Universal Inte... |
| CVE-2020-25279 | CRITICAL | 9.8 | 0.7% | Sep 11, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseb... |
| CVE-2020-25278 | CRITICAL | 9.8 | 0.7% | Sep 11, 2020 | An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software. The Quram image codec libra... |
| CVE-2020-1595 | CRITICAL | 9.9 | 2.0% | Sep 11, 2020 | <p>A remote code execution vulnerability exists in Microsoft SharePoint where APIs aren't properly protected from unsafe... |
| CVE-2020-1210 | CRITICAL | 9.9 | 1.8% | Sep 11, 2020 | <p>A remote code execution vulnerability exists in Microsoft SharePoint when the software fails to check the source mark... |
| CVE-2020-14100 | CRITICAL | 9.8 | 5.2% | Sep 11, 2020 | In Xiaomi router R3600 ROM version<1.0.66, filters in the set_WAN6 interface can be bypassed, causing remote code execut... |
| CVE-2020-14096 | CRITICAL | 9.8 | 1.2% | Sep 11, 2020 | Memory overflow in Xiaomi AI speaker Rom version <1.59.6 can happen when the speaker verifying a malicious firmware duri... |
| CVE-2020-25260 | CRITICAL | 9.8 | 2.7% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25259 | CRITICAL | 9.8 | 1.4% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25258 | CRITICAL | 9.8 | 1.5% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25257 | CRITICAL | 9.8 | 1.2% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25256 | CRITICAL | 9.1 | 0.6% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25254 | CRITICAL | 9.8 | 1.5% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25253 | CRITICAL | 9.8 | 1.1% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-25251 | CRITICAL | 9.1 | 1.2% | Sep 11, 2020 | An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an... |
| CVE-2020-11998 | CRITICAL | 9.8 | 51.2% | Sep 10, 2020 | A regression has been introduced in the commit preventing JMX re-bind. By passing an empty environment map to RMIConnect... |
| CVE-2020-9732 | CRITICAL | 9 | 2.8% | Sep 10, 2020 | The AEM Forms add-on for versions 6.5.5.0 (and below) and 6.4.8.2 (and below) are affected by a stored XSS vulnerability... |
| CVE-2020-8758 | CRITICAL | 9.8 | 1.7% | Sep 10, 2020 | Improper buffer restrictions in network subsystem in provisioned Intel(R) AMT and Intel(R) ISM versions before 11.8.79, ... |
| CVE-2020-15173 | CRITICAL | 9.8 | 1.2% | Sep 9, 2020 | In ACCEL-PPP (an implementation of PPTP/PPPoE/L2TP/SSTP), there is a buffer overflow when receiving an l2tp control pack... |
| CVE-2020-15903 | CRITICAL | 9.8 | 4.8% | Sep 9, 2020 | An issue was found in Nagios XI before 5.7.3. There is a privilege escalation vulnerability in backend scripts that ran ... |
| CVE-2020-24916 | CRITICAL | 9.8 | 17.4% | Sep 9, 2020 | CGI implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to OS command injection. |
| CVE-2020-24379 | CRITICAL | 9.8 | 3.4% | Sep 9, 2020 | WebDAV implementation in Yaws web server versions 1.81 to 2.0.7 is vulnerable to XXE injection. |
| CVE-2020-15787 | CRITICAL | 9.8 | 1.5% | Sep 9, 2020 | A vulnerability has been identified in SIMATIC HMI Unified Comfort Panels (All versions <= V16). Affected devices insuff... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now