2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-26999HIGH7.8A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1....
CVE-2020-25245HIGH7.8A vulnerability has been identified in DIGSI 4 (All versions < V4.94 SP1 HF 1). Several folders in the %PATH% are writea...
CVE-2020-25238HIGH7.8A vulnerability has been identified in PCS neo (Administration Console) (All versions < V3.1), TIA Portal (V15, V15.1 an...
CVE-2020-25237HIGH8.1A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions < V14.0...
CVE-2020-4795HIGH8.2IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information to an unauthorized user usi...
CVE-2020-27261HIGH8.8The Omron CX-One Version 4.60 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to r...
CVE-2020-27259HIGH8.8The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which m...
CVE-2020-27257HIGH7.8This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplie...
CVE-2020-16044HIGH8.8Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap co...
CVE-2020-13460HIGH8.8Multiple Cross-Site Request Forgery (CSRF) vulnerabilities were present in Tufin SecureTrack, affecting all versions pri...
CVE-2020-24685HIGH8.6An unauthenticated specially crafted packet sent by an attacker over the network will cause a denial-of-service (DoS) vu...
CVE-2020-36152HIGH8.8Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary...
CVE-2020-24944HIGH7.5picoquic (before 3rd of July 2020) allows attackers to cause a denial of service (infinite loop) via a crafted QUIC fram...
CVE-2020-35700HIGH8.8A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNM...
CVE-2020-36243HIGH8.8The Patient Portal of OpenEMR 5.0.2.1 is affected by a Command Injection vulnerability in /interface/main/backup.php. To...
CVE-2020-12122HIGH7.8In Max Secure Max Spyware Detector 1.0.0.044, the driver file (MaxProc64.sys) allows local users to cause a denial of se...
CVE-2020-10554HIGH7.5An issue was discovered in Psyprax beforee 3.2.2. Passwords used to encrypt the data are stored in the database in an ob...
CVE-2020-10552HIGH8.1An issue was discovered in Psyprax before 3.2.2. The Firebird database is accessible with the default user sysdba and pa...
CVE-2020-18750HIGH7.8Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file.
CVE-2020-8806HIGH7.5Electric Coin Company Zcashd before 2.1.1-1 allows attackers to trigger consensus failure and double spending. A valid c...
CVE-2020-35765HIGH8.8doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows ...
CVE-2020-10537HIGH7.8An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP p...
CVE-2020-27872HIGH8.8This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450...
CVE-2020-28450HIGH8.6This affects all versions of package decal. The vulnerability is in the extend function.
CVE-2020-28449HIGH8.6This affects all versions of package decal. The vulnerability is in the set function.

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now