2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-6088 | HIGH | 7.5 | 3.5% | Feb 4, 2021 | An exploitable denial of service vulnerability exists in the ENIP Request Path Network Segment functionality of Allen-Br... |
| CVE-2020-27249 | HIGH | 7.8 | 1.2% | Feb 4, 2021 | A specially crafted document can cause the document parser to copy data from a particular record type into a static-size... |
| CVE-2020-27248 | HIGH | 7.8 | 1.2% | Feb 4, 2021 | A specially crafted document can cause the document parser to copy data from a particular record type into a static-size... |
| CVE-2020-27247 | HIGH | 7.8 | 1.2% | Feb 4, 2021 | A specially crafted document can cause the document parser to copy data from a particular record type into a static-size... |
| CVE-2020-14246 | HIGH | 7.5 | 0.7% | Feb 4, 2021 | HCL OneTest Performance V9.5, V10.0, V10.1 uses basic authentication which is relatively weak. An attacker could potenti... |
| CVE-2020-13586 | HIGH | 7.8 | 1.5% | Feb 4, 2021 | A memory corruption vulnerability exists in the Excel Document SST Record 0x00fc functionality of SoftMaker Software Gmb... |
| CVE-2020-13580 | HIGH | 7.8 | 72.6% | Feb 4, 2021 | An exploitable heap-based buffer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMa... |
| CVE-2020-13579 | HIGH | 7.8 | 72.6% | Feb 4, 2021 | An exploitable integer overflow vulnerability exists in the PlanMaker document parsing functionality of SoftMaker Office... |
| CVE-2020-25857 | HIGH | 7.5 | 1.2% | Feb 3, 2021 | The function ClientEAPOLKeyRecvd() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to ... |
| CVE-2020-25856 | HIGH | 8.1 | 2.2% | Feb 3, 2021 | The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and e... |
| CVE-2020-25855 | HIGH | 8.1 | 2.6% | Feb 3, 2021 | The function AES_UnWRAP() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and exclu... |
| CVE-2020-25854 | HIGH | 8.1 | 2.6% | Feb 3, 2021 | The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and e... |
| CVE-2020-25853 | HIGH | 7.5 | 1.2% | Feb 3, 2021 | The function CheckMic() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excludi... |
| CVE-2020-17516 | HIGH | 7.5 | 1.9% | Feb 3, 2021 | Apache Cassandra versions 2.1.0 to 2.1.22, 2.2.0 to 2.2.19, 3.0.0 to 3.0.23, and 3.11.0 to 3.11.9, when using 'dc' or 'r... |
| CVE-2020-35667 | HIGH | 7.5 | 1.3% | Feb 3, 2021 | JetBrains TeamCity Plugin before 2020.2.85695 SSRF. Vulnerability that could potentially expose user credentials. |
| CVE-2020-28895 | HIGH | 7.3 | 1.5% | Feb 3, 2021 | In Wind River VxWorks, memory allocator has a possible overflow in calculating the memory block's size to be allocated b... |
| CVE-2020-27222 | HIGH | 7.5 | 0.9% | Feb 3, 2021 | In Eclipse Californium version 2.3.0 to 2.6.0, the certificate based (x509 and RPK) DTLS handshakes accidentally fails, ... |
| CVE-2020-29166 | HIGH | 7.5 | 2.3% | Feb 3, 2021 | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by file read/manipulation, which can result in remote in... |
| CVE-2020-29163 | HIGH | 8.8 | 1.1% | Feb 3, 2021 | PacsOne Server (PACS Server In One Box) below 7.1.1 is affected by SQL injection. |
| CVE-2020-35152 | HIGH | 7.8 | 0.3% | Feb 3, 2021 | Cloudflare WARP for Windows allows privilege escalation due to an unquoted service path. A malicious user or process run... |
| CVE-2020-8672 | HIGH | 7.8 | 0.3% | Feb 2, 2021 | Out of bound read in BIOS firmware for 8th, 9th Generation Intel(R) Core(TM), Intel(R) Celeron(R) Processor 4000 Series ... |
| CVE-2020-1910 | HIGH | 7.8 | 5.1% | Feb 2, 2021 | A missing bounds check in WhatsApp for Android prior to v2.21.1.13 and WhatsApp Business for Android prior to v2.21.1.13... |
| CVE-2020-14255 | HIGH | 7.5 | 1.1% | Feb 2, 2021 | HCL Digital Experience 9.5 containers include vulnerabilities that could expose sensitive data to unauthorized parties v... |
| CVE-2020-8101 | HIGH | 8.8 | 1.2% | Feb 2, 2021 | Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in HTTP interface of A... |
| CVE-2020-28495 | HIGH | 7.3 | 3.6% | Feb 2, 2021 | This affects the package total.js before 3.4.7. The set function can be used to set a value into the object according to... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now