2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-35558 | HIGH | 7.5 | 1.5% | Feb 16, 2021 | An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual through 2... |
| CVE-2020-35734 | HIGH | 7.2 | 6.8% | Feb 15, 2021 | Sruu.pl in Batflat 1.3.6 allows an authenticated user to perform code injection (and consequently Remote Code Execution)... |
| CVE-2020-29143 | HIGH | 7.2 | 1.8% | Feb 15, 2021 | A SQL injection vulnerability in interface/reports/non_reported.php in OpenEMR before 5.0.2.5 allows a remote authentica... |
| CVE-2020-29140 | HIGH | 7.2 | 1.8% | Feb 15, 2021 | A SQL injection vulnerability in interface/reports/immunization_report.php in OpenEMR before 5.0.2.5 allows a remote aut... |
| CVE-2020-29139 | HIGH | 7.2 | 1.8% | Feb 15, 2021 | A SQL injection vulnerability in interface/main/finder/patient_select.php from library/patient.inc in OpenEMR before 5.0... |
| CVE-2020-29142 | HIGH | 7.2 | 1.8% | Feb 15, 2021 | A SQL injection vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.5 allows a remote authe... |
| CVE-2020-28337 | HIGH | 7.2 | 16.6% | Feb 15, 2021 | A directory traversal issue in the Utils/Unzip module in Microweber through 1.1.20 allows an authenticated attacker to g... |
| CVE-2020-24899 | HIGH | 8.8 | 13.1% | Feb 15, 2021 | Nagios XI 5.7.2 is affected by a remote code execution (RCE) vulnerability. An authenticated user can inject additional ... |
| CVE-2020-22427 | HIGH | 7.2 | 12.6% | Feb 15, 2021 | NagiosXI 5.6.11 is affected by a remote code execution (RCE) vulnerability. An authenticated nagiosadmin user can inject... |
| CVE-2020-22425 | HIGH | 8.8 | 2.5% | Feb 15, 2021 | Centreon 19.10-3.el7 is affected by a SQL injection vulnerability, where an authorized user is able to inject additional... |
| CVE-2020-35512 | HIGH | 7.8 | 0.3% | Feb 15, 2021 | A use-after-free flaw was found in D-Bus Development branch <= 1.13.16, dbus-1.12.x stable branch <= 1.12.18, and dbus-1... |
| CVE-2020-29031 | HIGH | 8.1 | 0.7% | Feb 15, 2021 | An Insecure Direct Object Reference vulnerability exists in the web UI of the GateManager which allows an authenticated ... |
| CVE-2020-4955 | HIGH | 8 | 0.6% | Feb 15, 2021 | IBM Spectrum Protect Operations Center 7.1 and 8.1could allow a remote attacker to execute arbitrary code on the system,... |
| CVE-2020-13949 | HIGH | 7.5 | 6.8% | Feb 12, 2021 | In Apache Thrift 0.9.3 to 0.13.0, malicious RPC clients could send short messages which would result in a large memory a... |
| CVE-2020-27869 | HIGH | 8.8 | 5.1% | Feb 12, 2021 | This vulnerability allows remote attackers to escalate privileges on affected installations of SolarWinds Network Perfor... |
| CVE-2020-27866 | HIGH | 8.8 | 8.7% | Feb 12, 2021 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R6020... |
| CVE-2020-27865 | HIGH | 8.8 | 2.5% | Feb 12, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1... |
| CVE-2020-27864 | HIGH | 8.8 | 9.8% | Feb 12, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1... |
| CVE-2020-27862 | HIGH | 8.8 | 1.4% | Feb 12, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DVA-2... |
| CVE-2020-27861 | HIGH | 8.8 | 2.0% | Feb 12, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR Orbi... |
| CVE-2020-27860 | HIGH | 7.8 | 3.6% | Feb 12, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.1.35... |
| CVE-2020-35498 | HIGH | 7.5 | 8.0% | Feb 11, 2021 | A vulnerability was found in openvswitch. A limitation in the implementation of userspace packet parsing can allow a mal... |
| CVE-2020-25493 | HIGH | 7.5 | 1.1% | Feb 11, 2021 | Oclean Mobile Application 2.1.2 communicates with an external website using HTTP so it is possible to eavesdrop the netw... |
| CVE-2020-27874 | HIGH | 8.8 | 2.0% | Feb 10, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Tencent WeChat 7.0.18.... |
| CVE-2020-27871 | HIGH | 7.2 | 90.4% | Feb 10, 2021 | This vulnerability allows remote attackers to create arbitrary files on affected installations of SolarWinds Orion Platf... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now