2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-12246 | HIGH | 8.8 | 4.9% | Apr 29, 2020 | Beeline Smart Box 2.0.38 routers allow "Advanced settings > Other > Diagnostics" OS command injection via the Ping ping_... |
| CVE-2020-11884 | HIGH | 7 | 0.4% | Apr 29, 2020 | In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as de... |
| CVE-2020-3955 | CRITICAL | 9.3 | 1.3% | Apr 29, 2020 | ESXi 6.5 without patch ESXi650-201912104-SG and ESXi 6.7 without patch ESXi670-202004103-SG do not properly neutralize s... |
| CVE-2020-12447 | HIGH | 7.5 | 11.8% | Apr 29, 2020 | A Local File Inclusion (LFI) issue on Onkyo TX-NR585 1000-0000-000-0008-0000 devices allows remote unauthenticated users... |
| CVE-2020-8489 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all pub... |
| CVE-2020-8488 | HIGH | 7.8 | 0.4% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all published... |
| CVE-2020-8487 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA Base (all published versions) e... |
| CVE-2020-8486 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA RNRP (all published versions) e... |
| CVE-2020-8485 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA for MOD 300 (all published vers... |
| CVE-2020-8484 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA for DCI (all published versions... |
| CVE-2020-8481 | CRITICAL | 9.8 | 1.8% | Apr 29, 2020 | For ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Compact HMI versions... |
| CVE-2020-8479 | CRITICAL | 9.8 | 2.2% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8478 | LOW | 3.3 | 0.3% | Apr 29, 2020 | Insufficient protection of the inter-process communication functions in ABB System 800xA products OPC Server for AC 800M... |
| CVE-2020-8476 | HIGH | 7.5 | 1.5% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8475 | HIGH | 7.5 | 1.1% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-8471 | HIGH | 7.8 | 0.4% | Apr 29, 2020 | For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ... |
| CVE-2020-12443 | CRITICAL | 9.8 | 3.6% | Apr 29, 2020 | BigBlueButton before 2.2.6 allows remote attackers to read arbitrary files because the presfilename (lowercase) value ca... |
| CVE-2020-8473 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient folder permissions used by system functions in ABB System 800xA Base (version 6.1 and earlier) allow low pr... |
| CVE-2020-8472 | HIGH | 7.8 | 0.3% | Apr 29, 2020 | Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0... |
| CVE-2020-7453 | MEDIUM | 6 | 0.3% | Apr 29, 2020 | In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r359020, and 11.3-RELEASE... |
| CVE-2020-7452 | CRITICAL | 9.1 | 1.8% | Apr 29, 2020 | In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r357489, and 11.3-RELEASE... |
| CVE-2020-12442 | CRITICAL | 9.8 | 2.3% | Apr 28, 2020 | Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250. |
| CVE-2020-12261 | MEDIUM | 5.4 | 2.6% | Apr 28, 2020 | Open-AudIT 3.3.0 allows an XSS attack after login. |
| CVE-2020-12103 | HIGH | 7.7 | 1.5% | Apr 28, 2020 | In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticate... |
| CVE-2020-12438 | MEDIUM | 5.4 | 0.6% | Apr 28, 2020 | An XSS vulnerability exists in the banners.php page of PHP-Fusion 9.03.50. This can be exploited because the only securi... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now