2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-12246HIGH8.8Beeline Smart Box 2.0.38 routers allow "Advanced settings > Other > Diagnostics" OS command injection via the Ping ping_...
CVE-2020-11884HIGH7In the Linux kernel 4.19 through 5.6.7 on the s390 platform, code execution may occur because of a race condition, as de...
CVE-2020-3955CRITICAL9.3ESXi 6.5 without patch ESXi650-201912104-SG and ESXi 6.7 without patch ESXi670-202004103-SG do not properly neutralize s...
CVE-2020-12447HIGH7.5A Local File Inclusion (LFI) issue on Onkyo TX-NR585 1000-0000-000-0008-0000 devices allows remote unauthenticated users...
CVE-2020-8489HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all pub...
CVE-2020-8488HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all published...
CVE-2020-8487HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA Base (all published versions) e...
CVE-2020-8486HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA RNRP (all published versions) e...
CVE-2020-8485HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA for MOD 300 (all published vers...
CVE-2020-8484HIGH7.8Insufficient protection of the inter-process communication functions in ABB System 800xA for DCI (all published versions...
CVE-2020-8481CRITICAL9.8For ABB products ABB Ability™ System 800xA and related system extensions versions 5.1, 6.0 and 6.1, Compact HMI versions...
CVE-2020-8479CRITICAL9.8For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8478LOW3.3Insufficient protection of the inter-process communication functions in ABB System 800xA products OPC Server for AC 800M...
CVE-2020-8476HIGH7.5For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8475HIGH7.5For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-8471HIGH7.8For the Central Licensing Server component used in ABB products ABB Ability™ System 800xA and related system extensions ...
CVE-2020-12443CRITICAL9.8BigBlueButton before 2.2.6 allows remote attackers to read arbitrary files because the presfilename (lowercase) value ca...
CVE-2020-8473HIGH7.8Insufficient folder permissions used by system functions in ABB System 800xA Base (version 6.1 and earlier) allow low pr...
CVE-2020-8472HIGH7.8Insufficient folder permissions used by system functions in ABB System 800xA products OPCServer for AC800M (versions 6.0...
CVE-2020-7453MEDIUM6In FreeBSD 12.1-STABLE before r359021, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r359020, and 11.3-RELEASE...
CVE-2020-7452CRITICAL9.1In FreeBSD 12.1-STABLE before r357490, 12.1-RELEASE before 12.1-RELEASE-p3, 11.3-STABLE before r357489, and 11.3-RELEASE...
CVE-2020-12442CRITICAL9.8Ivanti Avalanche 6.3 allows a SQL injection that is vaguely associated with the Apache HTTP Server, aka Bug 683250.
CVE-2020-12261MEDIUM5.4Open-AudIT 3.3.0 allows an XSS attack after login.
CVE-2020-12103HIGH7.7In Tiny File Manager 2.4.1 there is a vulnerability in the ajax file backup copy functionality which allows authenticate...
CVE-2020-12438MEDIUM5.4An XSS vulnerability exists in the banners.php page of PHP-Fusion 9.03.50. This can be exploited because the only securi...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now