2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0523 | MEDIUM | 4.4 | 0.2% | Feb 17, 2021 | Improper access control in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before vers... |
| CVE-2020-0522 | MEDIUM | 4.4 | 0.2% | Feb 17, 2021 | Improper initialization in the firmware for the Intel(R) Ethernet I210 Controller series of network adapters before vers... |
| CVE-2020-0518 | MEDIUM | 5.5 | 0.2% | Feb 17, 2021 | Improper access control in the Intel(R) HD Graphics Control Panel before version 15.40.46.5144 and 15.36.39.5143 may all... |
| CVE-2020-2502 | MEDIUM | 6.1 | 0.8% | Feb 17, 2021 | This cross-site scripting vulnerability in Photo Station allows remote attackers to inject malicious code. QANP We have ... |
| CVE-2020-29457 | MEDIUM | 4.4 | 0.3% | Feb 16, 2021 | A Privilege Elevation vulnerability in OPC UA .NET Standard Stack 1.4.363.107 could allow a rogue application to establi... |
| CVE-2020-28918 | MEDIUM | 5.3 | 1.0% | Feb 16, 2021 | DualShield 5.9.8.0821 allows username enumeration on its login form. A valid username results in prompting for the passw... |
| CVE-2020-35570 | MEDIUM | 5.3 | 1.2% | Feb 16, 2021 | An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual through 2... |
| CVE-2020-35569 | MEDIUM | 6.1 | 0.6% | Feb 16, 2021 | An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is a self XSS issue with a... |
| CVE-2020-35568 | MEDIUM | 4.3 | 0.9% | Feb 16, 2021 | An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all ve... |
| CVE-2020-35566 | MEDIUM | 5.3 | 1.2% | Feb 16, 2021 | An issue was discovered in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all ve... |
| CVE-2020-35563 | MEDIUM | 5.4 | 0.5% | Feb 16, 2021 | An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an incomplete XSS filte... |
| CVE-2020-35561 | MEDIUM | 5.3 | 1.2% | Feb 16, 2021 | An issue was discovered MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versi... |
| CVE-2020-35560 | MEDIUM | 6.1 | 0.6% | Feb 16, 2021 | An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an unauthenticated open... |
| CVE-2020-35559 | MEDIUM | 4.3 | 0.8% | Feb 16, 2021 | An issue was discovered in MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 through 2.6.2. There is an unused function that... |
| CVE-2020-35557 | MEDIUM | 6.5 | 1.0% | Feb 16, 2021 | An issue in MB connect line mymbCONNECT24, mbCONNECT24 and Helmholz myREX24 and myREX24.virtual in all versions through ... |
| CVE-2020-29027 | MEDIUM | 5.4 | 0.5% | Feb 16, 2021 | Cross-site Scripting (XSS) vulnerability in GUI of Secomea SiteManager could allow an attacker to cause an XSS Attack. T... |
| CVE-2020-29025 | MEDIUM | 6.1 | 0.6% | Feb 16, 2021 | A vulnerability in SiteManager-Embedded (SM-E) Web server which may allow attacker to construct a URL that if visited by... |
| CVE-2020-29024 | MEDIUM | 5.3 | 0.5% | Feb 16, 2021 | Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in (GTA) GoToAppliance of Secomea GateManager... |
| CVE-2020-29022 | MEDIUM | 5.3 | 0.8% | Feb 16, 2021 | Failure to Sanitize host header value on output in the GateManager Web server could allow an attacker to conduct web cac... |
| CVE-2020-25340 | MEDIUM | 5.5 | 0.3% | Feb 16, 2021 | An issue was discovered in NFStream 5.2.0. Because some allocated modules are not correctly freed, if the nfstream objec... |
| CVE-2020-29026 | MEDIUM | 6.5 | 1.5% | Feb 15, 2021 | A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated a... |
| CVE-2020-4956 | MEDIUM | 4.8 | 0.4% | Feb 15, 2021 | IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused by a RPC that allows cer... |
| CVE-2020-4954 | MEDIUM | 5.4 | 0.5% | Feb 15, 2021 | IBM Spectrum Protect Operations Center 7.1 and 8.1 could allow a remote attacker to bypass authentication restrictions, ... |
| CVE-2020-28500 | MEDIUM | 5.3 | 7.3% | Feb 15, 2021 | Lodash versions prior to 4.17.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the toNumber, trim a... |
| CVE-2020-7071 | MEDIUM | 5.3 | 3.0% | Feb 15, 2021 | In PHP versions 7.3.x below 7.3.26, 7.4.x below 7.4.14 and 8.0.0, when validating URL with functions like filter_var($ur... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now