2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-5575MEDIUM6.1Cross-site scripting vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), M...
CVE-2020-5574MEDIUM5.3HTML attribute value injection vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable ...
CVE-2020-5409MEDIUM6.1Pivotal Concourse, most versions prior to 6.0.0, allows redirects to untrusted websites in its login flow. A remote unau...
CVE-2020-11069HIGH8.8In TYPO3 CMS 9.0.0 through 9.5.16 and 10.0.0 through 10.4.1, it has been discovered that the backend user interface and ...
CVE-2020-11067HIGH8.8In TYPO3 CMS 9.0.0 through 9.5.16 and 10.0.0 through 10.4.1, it has been discovered that backend user settings (in $BE_U...
CVE-2020-11066CRITICAL10In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.17 and greater than or equal to 10.0.0 and less than 10.4....
CVE-2020-11065MEDIUM5.4In TYPO3 CMS greater than or equal to 9.5.12 and less than 9.5.17, and greater than or equal to 10.2.0 and less than 10....
CVE-2020-11064MEDIUM5.4In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.17 and greater than or equal to 10.0.0 and less than 10.4....
CVE-2020-11063LOW3.7In TYPO3 CMS versions 10.4.0 and 10.4.1, it has been discovered that time-based attacks can be used with the password re...
CVE-2020-2018CRITICAL9An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access ...
CVE-2020-2017MEDIUM6.1A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacke...
CVE-2020-2016HIGH7A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root pri...
CVE-2020-2015HIGH8.8A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or ...
CVE-2020-2014HIGH8.8An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbit...
CVE-2020-2013HIGH8.8A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an ...
CVE-2020-2012HIGH7.5Improper restriction of XML external entity reference ('XXE') vulnerability in Palo Alto Networks Panorama management se...
CVE-2020-2011HIGH7.5An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for ...
CVE-2020-2010HIGH7.2An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute ar...
CVE-2020-2009HIGH7.2An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an au...
CVE-2020-2008HIGH7.2An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated...
CVE-2020-2007HIGH7.2An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to poten...
CVE-2020-2006HIGH8.8A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated us...
CVE-2020-2005MEDIUM6.1A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalPro...
CVE-2020-2004MEDIUM5.5Under certain circumstances a user's password may be logged in cleartext in the PanGPS.log diagnostic file when logs are...
CVE-2020-2003MEDIUM6.5An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now