2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-6088HIGH7.5An exploitable denial of service vulnerability exists in the ENIP Request Path Network Segment functionality of Allen-Br...
CVE-2020-27249HIGH7.8A specially crafted document can cause the document parser to copy data from a particular record type into a static-size...
CVE-2020-27248HIGH7.8A specially crafted document can cause the document parser to copy data from a particular record type into a static-size...
CVE-2020-27247HIGH7.8A specially crafted document can cause the document parser to copy data from a particular record type into a static-size...
CVE-2020-14246HIGH7.5HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potenti...
CVE-2020-13586HIGH7.8A memory corruption vulnerability exists in the Excel Document SST Record 0x00fc functionality of SoftMaker Software Gmb...
CVE-2020-13580HIGH7.8An exploitable heap-based buffer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMa...
CVE-2020-13579HIGH7.8An exploitable integer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMaker Office...
CVE-2020-25857HIGH7.5The function ClientEAPOLKeyRecvd() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to ...
CVE-2020-25856HIGH8.1The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and e...
CVE-2020-25855HIGH8.1The function AES_UnWRAP() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and exclu...
CVE-2020-25854HIGH8.1The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and e...
CVE-2020-25853HIGH7.5The function CheckMic() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excludi...
CVE-2020-17516HIGH7.5Apache Cassandra versions 2.1.0 to 2.1.22, 2.2.0 to 2.2.19, 3.0.0 to 3.0.23, and 3.11.0 to 3.11.9, when using 'dc' or 'r...
CVE-2020-35667HIGH7.5JetBrains TeamCity Plugin before 2020.2.85695 SSRF. Vulnerability that could potentially expose user credentials.
CVE-2020-28895HIGH7.3In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated b...
CVE-2020-27222HIGH7.5In Eclipse Californium version 2.3.0 to 2.6.0, the certificate based (x509 and RPK) DTLS handshakes accidentally fails, ...
CVE-2020-29166HIGH7.5PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by file read/manipulation, which can result in remote in...
CVE-2020-29163HIGH8.8PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by SQL injection.
CVE-2020-35152HIGH7.8Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process run...
CVE-2020-8672HIGH7.8Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series ...
CVE-2020-1910HIGH7.8A missing bounds check in WhatsApp for Android prior to v2.21.1.13 and WhatsApp Business for Android prior to v2.21.1.13...
CVE-2020-14255HIGH7.5HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to unauthorized parties v...
CVE-2020-8101HIGH8.8Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of A...
CVE-2020-28495HIGH7.3This affects the package total.js before 3.4.7. The set function can be used to set a value into the object according to...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now