2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26999 | HIGH | 7.8 | 0.7% | Feb 9, 2021 | A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.... |
| CVE-2020-25245 | HIGH | 7.8 | 0.3% | Feb 9, 2021 | A vulnerability has been identified in DIGSI 4 (All versions < V4.94 SP1 HF 1). Several folders in the %PATH% are writea... |
| CVE-2020-25238 | HIGH | 7.8 | 0.9% | Feb 9, 2021 | A vulnerability has been identified in PCS neo (Administration Console) (All versions < V3.1), TIA Portal (V15, V15.1 an... |
| CVE-2020-25237 | HIGH | 8.1 | 20.6% | Feb 9, 2021 | A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions < V14.0... |
| CVE-2020-4795 | HIGH | 8.2 | 1.7% | Feb 9, 2021 | IBM Security Identity Governance and Intelligence 5.2.6 could disclose sensitive information to an unauthorized user usi... |
| CVE-2020-27261 | HIGH | 8.8 | 7.6% | Feb 9, 2021 | The Omron CX-One Version 4.60 and prior is vulnerable to a stack-based buffer overflow, which may allow an attacker to r... |
| CVE-2020-27259 | HIGH | 8.8 | 2.7% | Feb 9, 2021 | The Omron CX-One Version 4.60 and prior may allow an attacker to supply a pointer to arbitrary memory locations, which m... |
| CVE-2020-27257 | HIGH | 7.8 | 1.8% | Feb 9, 2021 | This vulnerability allows local attackers to execute arbitrary code due to the lack of proper validation of user-supplie... |
| CVE-2020-16044 | HIGH | 8.8 | 1.3% | Feb 9, 2021 | Use after free in WebRTC in Google Chrome prior to 88.0.4324.96 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-13460 | HIGH | 8.8 | 0.6% | Feb 9, 2021 | Multiple Cross-Site Request Forgery (CSRF) vulnerabilities were present in Tufin SecureTrack, affecting all versions pri... |
| CVE-2020-24685 | HIGH | 8.6 | 1.6% | Feb 9, 2021 | An unauthenticated specially crafted packet sent by an attacker over the network will cause a denial-of-service (DoS) vu... |
| CVE-2020-36152 | HIGH | 8.8 | 2.3% | Feb 8, 2021 | Buffer overflow in readDataVar in hdf/dataobject.c in Symonics libmysofa 0.5 - 1.1 allows attackers to execute arbitrary... |
| CVE-2020-24944 | HIGH | 7.5 | 1.5% | Feb 8, 2021 | picoquic (before 3rd of July 2020) allows attackers to cause a denial of service (infinite loop) via a crafted QUIC fram... |
| CVE-2020-35700 | HIGH | 8.8 | 2.3% | Feb 8, 2021 | A second-order SQL injection issue in Widgets/TopDevicesController.php (aka the Top Devices dashboard widget) of LibreNM... |
| CVE-2020-36243 | HIGH | 8.8 | 64.1% | Feb 7, 2021 | The Patient Portal of OpenEMR 5.0.2.1 is affected by a Command Injection vulnerability in /interface/main/backup.php. To... |
| CVE-2020-12122 | HIGH | 7.8 | 0.5% | Feb 5, 2021 | In Max Secure Max Spyware Detector 1.0.0.044, the driver file (MaxProc64.sys) allows local users to cause a denial of se... |
| CVE-2020-10554 | HIGH | 7.5 | 0.8% | Feb 5, 2021 | An issue was discovered in Psyprax beforee 3.2.2. Passwords used to encrypt the data are stored in the database in an ob... |
| CVE-2020-10552 | HIGH | 8.1 | 1.1% | Feb 5, 2021 | An issue was discovered in Psyprax before 3.2.2. The Firebird database is accessible with the default user sysdba and pa... |
| CVE-2020-18750 | HIGH | 7.8 | 0.5% | Feb 5, 2021 | Buffer overflow in pdf2json 0.69 allows local users to execute arbitrary code by converting a crafted PDF file. |
| CVE-2020-8806 | HIGH | 7.5 | 1.0% | Feb 5, 2021 | Electric Coin Company Zcashd before 2.1.1-1 allows attackers to trigger consensus failure and double spending. A valid c... |
| CVE-2020-35765 | HIGH | 8.8 | 28.2% | Feb 5, 2021 | doFilter in com.adventnet.appmanager.filter.UriCollector in Zoho ManageEngine Applications Manager through 14930 allows ... |
| CVE-2020-10537 | HIGH | 7.8 | 0.3% | Feb 5, 2021 | An issue was discovered in Epikur before 20.1.1. A Glassfish 4.1 server with a default configuration is running on TCP p... |
| CVE-2020-27872 | HIGH | 8.8 | 0.9% | Feb 4, 2021 | This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR R7450... |
| CVE-2020-28450 | HIGH | 8.6 | 1.8% | Feb 4, 2021 | This affects all versions of package decal. The vulnerability is in the extend function. |
| CVE-2020-28449 | HIGH | 8.6 | 1.8% | Feb 4, 2021 | This affects all versions of package decal. The vulnerability is in the set function. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now