2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-13947 | MEDIUM | 6.1 | 79.0% | Feb 8, 2021 | An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console... |
| CVE-2020-36151 | MEDIUM | 6.5 | 1.2% | Feb 8, 2021 | Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to ... |
| CVE-2020-36150 | MEDIUM | 6.5 | 1.2% | Feb 8, 2021 | Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overfl... |
| CVE-2020-36149 | MEDIUM | 6.5 | 1.2% | Feb 8, 2021 | Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointe... |
| CVE-2020-36148 | MEDIUM | 6.5 | 1.2% | Feb 8, 2021 | Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointe... |
| CVE-2020-26052 | MEDIUM | 5.4 | 0.7% | Feb 8, 2021 | Online Marriage Registration System 1.0 is affected by stored cross-site scripting (XSS) vulnerabilities in multiple par... |
| CVE-2020-1779 | MEDIUM | 4.9 | 1.0% | Feb 8, 2021 | When dynamic templates are used (OTRSTicketForms), admin can use OTRS tags which are not masked properly and can reveal ... |
| CVE-2020-11915 | MEDIUM | 6.8 | 0.6% | Feb 8, 2021 | An issue was discovered in Svakom Siime Eye 14.1.00000001.3.330.0.0.3.14. By sending a set_params.cgi?telnetd=1&save=1&r... |
| CVE-2020-9205 | MEDIUM | 4.9 | 0.6% | Feb 6, 2021 | There has a CSV injection vulnerability in ManageOne 8.0.1. An attacker with common privilege may exploit this vulnerabi... |
| CVE-2020-9118 | MEDIUM | 6.8 | 0.2% | Feb 6, 2021 | There is an insufficient integrity check vulnerability in Huawei Sound X Product. The system does not check certain soft... |
| CVE-2020-5812 | MEDIUM | 5.9 | 0.5% | Feb 6, 2021 | Nessus AMI versions 8.12.0 and earlier were found to either not validate, or incorrectly validate, a certificate which c... |
| CVE-2020-14312 | MEDIUM | 5.9 | 1.2% | Feb 6, 2021 | A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all version... |
| CVE-2020-11836 | MEDIUM | 5.5 | 0.1% | Feb 6, 2021 | OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb sh... |
| CVE-2020-9453 | MEDIUM | 5.5 | 0.4% | Feb 5, 2021 | In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of service (BSOD) or possi... |
| CVE-2020-10858 | MEDIUM | 5.3 | 1.1% | Feb 5, 2021 | Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permissi... |
| CVE-2020-10553 | MEDIUM | 5.5 | 0.2% | Feb 5, 2021 | An issue was discovered in Psyprax before 3.2.2. The file %PROGRAMDATA%\Psyprax32\PPScreen.ini contains a hash for the l... |
| CVE-2020-10375 | MEDIUM | 5.5 | 0.3% | Feb 5, 2021 | An issue was discovered in New Media Smarty before 9.10. Passwords are stored in the database in an obfuscated format th... |
| CVE-2020-9014 | MEDIUM | 5.5 | 0.4% | Feb 5, 2021 | In Epson iProjection v2.30, the driver file (EMP_NSAU.sys) allows local users to cause a denial of service (BSOD) via cr... |
| CVE-2020-10234 | MEDIUM | 6.5 | 3.8% | Feb 5, 2021 | The AscRegistryFilter.sys kernel driver in IObit Advanced SystemCare 13.2 allows an unprivileged user to send an IOCTL t... |
| CVE-2020-18737 | MEDIUM | 6.1 | 1.3% | Feb 5, 2021 | An issue was discovered in Typora 0.9.67. There is an XSS vulnerability that causes Remote Code Execution. |
| CVE-2020-4832 | MEDIUM | 5.5 | 0.3% | Feb 5, 2021 | IBM PowerHA 7.2 could allow a local attacker to obtain sensitive information from temporary directories after a discover... |
| CVE-2020-8807 | MEDIUM | 5.3 | 1.0% | Feb 5, 2021 | In Electric Coin Company Zcashd before 2.1.1-1, the time offset between messages could be leveraged to obtain sensitive ... |
| CVE-2020-36241 | MEDIUM | 5.5 | 0.6% | Feb 5, 2021 | autoar-extractor.c in GNOME gnome-autoar through 0.2.4, as used by GNOME Shell, Nautilus, and other software, allows Dir... |
| CVE-2020-10538 | MEDIUM | 5.5 | 0.3% | Feb 5, 2021 | An issue was discovered in Epikur before 20.1.1. It stores the secret passwords of the users as MD5 hashes in the databa... |
| CVE-2020-5032 | MEDIUM | 4.3 | 0.5% | Feb 4, 2021 | IBM QRadar SIEM 7.3 and 7.4 in some configurations may be vulnerable to a temporary denial of service attack when sent p... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now