2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-5575 | MEDIUM | 6.1 | 0.9% | May 14, 2020 | Cross-site scripting vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable Type 7), M... |
| CVE-2020-5574 | MEDIUM | 5.3 | 1.2% | May 14, 2020 | HTML attribute value injection vulnerability in Movable Type series (Movable Type 7 r.4606 (7.2.1) and earlier (Movable ... |
| CVE-2020-5409 | MEDIUM | 6.1 | 0.9% | May 14, 2020 | Pivotal Concourse, most versions prior to 6.0.0, allows redirects to untrusted websites in its login flow. A remote unau... |
| CVE-2020-11069 | HIGH | 8.8 | 0.7% | May 14, 2020 | In TYPO3 CMS 9.0.0 through 9.5.16 and 10.0.0 through 10.4.1, it has been discovered that the backend user interface and ... |
| CVE-2020-11067 | HIGH | 8.8 | 2.0% | May 14, 2020 | In TYPO3 CMS 9.0.0 through 9.5.16 and 10.0.0 through 10.4.1, it has been discovered that backend user settings (in $BE_U... |
| CVE-2020-11066 | CRITICAL | 10 | 1.5% | May 14, 2020 | In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.17 and greater than or equal to 10.0.0 and less than 10.4.... |
| CVE-2020-11065 | MEDIUM | 5.4 | 0.5% | May 13, 2020 | In TYPO3 CMS greater than or equal to 9.5.12 and less than 9.5.17, and greater than or equal to 10.2.0 and less than 10.... |
| CVE-2020-11064 | MEDIUM | 5.4 | 0.5% | May 13, 2020 | In TYPO3 CMS greater than or equal to 9.0.0 and less than 9.5.17 and greater than or equal to 10.0.0 and less than 10.4.... |
| CVE-2020-11063 | LOW | 3.7 | 1.2% | May 13, 2020 | In TYPO3 CMS versions 10.4.0 and 10.4.1, it has been discovered that time-based attacks can be used with the password re... |
| CVE-2020-2018 | CRITICAL | 9 | 1.3% | May 13, 2020 | An authentication bypass vulnerability in the Panorama context switching feature allows an attacker with network access ... |
| CVE-2020-2017 | MEDIUM | 6.1 | 0.8% | May 13, 2020 | A DOM-Based Cross Site Scripting Vulnerability exists in PAN-OS and Panorama Management Web Interfaces. A remote attacke... |
| CVE-2020-2016 | HIGH | 7 | 0.6% | May 13, 2020 | A race condition due to insecure creation of a file in a temporary directory vulnerability in PAN-OS allows for root pri... |
| CVE-2020-2015 | HIGH | 8.8 | 1.9% | May 13, 2020 | A buffer overflow vulnerability in the PAN-OS management server allows authenticated users to crash system processes or ... |
| CVE-2020-2014 | HIGH | 8.8 | 2.7% | May 13, 2020 | An OS Command Injection vulnerability in PAN-OS management server allows authenticated users to inject and execute arbit... |
| CVE-2020-2013 | HIGH | 8.8 | 0.6% | May 13, 2020 | A cleartext transmission of sensitive information vulnerability in Palo Alto Networks PAN-OS Panorama that discloses an ... |
| CVE-2020-2012 | HIGH | 7.5 | 1.9% | May 13, 2020 | Improper restriction of XML external entity reference ('XXE') vulnerability in Palo Alto Networks Panorama management se... |
| CVE-2020-2011 | HIGH | 7.5 | 1.8% | May 13, 2020 | An improper input validation vulnerability in the configuration daemon of Palo Alto Networks PAN-OS Panorama allows for ... |
| CVE-2020-2010 | HIGH | 7.2 | 2.2% | May 13, 2020 | An OS command injection vulnerability in PAN-OS management interface allows an authenticated administrator to execute ar... |
| CVE-2020-2009 | HIGH | 7.2 | 2.0% | May 13, 2020 | An external control of filename vulnerability in the SD WAN component of Palo Alto Networks PAN-OS Panorama allows an au... |
| CVE-2020-2008 | HIGH | 7.2 | 2.8% | May 13, 2020 | An OS command injection and external control of filename vulnerability in Palo Alto Networks PAN-OS allows authenticated... |
| CVE-2020-2007 | HIGH | 7.2 | 2.2% | May 13, 2020 | An OS command injection vulnerability in the management server component of PAN-OS allows an authenticated user to poten... |
| CVE-2020-2006 | HIGH | 8.8 | 1.9% | May 13, 2020 | A stack-based buffer overflow vulnerability in the management server component of PAN-OS that allows an authenticated us... |
| CVE-2020-2005 | MEDIUM | 6.1 | 0.8% | May 13, 2020 | A cross-site scripting (XSS) vulnerability exists when visiting malicious websites with the Palo Alto Networks GlobalPro... |
| CVE-2020-2004 | MEDIUM | 5.5 | 0.3% | May 13, 2020 | Under certain circumstances a user's password may be logged in cleartext in the PanGPS.log diagnostic file when logs are... |
| CVE-2020-2003 | MEDIUM | 6.5 | 0.9% | May 13, 2020 | An external control of filename vulnerability in the command processing of PAN-OS allows an authenticated administrator ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now