2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-13947MEDIUM6.1An instance of a cross-site scripting vulnerability was identified to be present in the web based administration console...
CVE-2020-36151MEDIUM6.5Incorrect handling of input data in mysofa_resampler_reset_mem function in the libmysofa library 0.5 - 1.1 will lead to ...
CVE-2020-36150MEDIUM6.5Incorrect handling of input data in loudness function in the libmysofa library 0.5 - 1.1 will lead to heap buffer overfl...
CVE-2020-36149MEDIUM6.5Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointe...
CVE-2020-36148MEDIUM6.5Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointe...
CVE-2020-26052MEDIUM5.4Online Marriage Registration System 1.0 is affected by stored cross-site scripting (XSS) vulnerabilities in multiple par...
CVE-2020-1779MEDIUM4.9When dynamic templates are used (OTRSTicketForms), admin can use OTRS tags which are not masked properly and can reveal ...
CVE-2020-11915MEDIUM6.8An issue was discovered in Svakom Siime Eye 14.1.00000001.3.330.0.0.3.14. By sending a set_params.cgi?telnetd=1&save=1&r...
CVE-2020-9205MEDIUM4.9There has a CSV injection vulnerability in ManageOne 8.0.1. An attacker with common privilege may exploit this vulnerabi...
CVE-2020-9118MEDIUM6.8There is an insufficient integrity check vulnerability in Huawei Sound X Product. The system does not check certain soft...
CVE-2020-5812MEDIUM5.9Nessus AMI versions 8.12.0 and earlier were found to either not validate, or incorrectly validate, a certificate which c...
CVE-2020-14312MEDIUM5.9A flaw was found in the default configuration of dnsmasq, as shipped with Fedora versions prior to 31 and in all version...
CVE-2020-11836MEDIUM5.5OPPO Android Phone with MTK chipset and Android 8.1/9/10/11 versions have an information leak vulnerability. The “adb sh...
CVE-2020-9453MEDIUM5.5In Epson iProjection v2.30, the driver file EMP_MPAU.sys allows local users to cause a denial of service (BSOD) or possi...
CVE-2020-10858MEDIUM5.3Zulip Desktop before 5.0.0 allows attackers to perform recording via the webcam and microphone due to a missing permissi...
CVE-2020-10553MEDIUM5.5An issue was discovered in Psyprax before 3.2.2. The file %PROGRAMDATA%\Psyprax32\PPScreen.ini contains a hash for the l...
CVE-2020-10375MEDIUM5.5An issue was discovered in New Media Smarty before 9.10. Passwords are stored in the database in an obfuscated format th...
CVE-2020-9014MEDIUM5.5In Epson iProjection v2.30, the driver file (EMP_NSAU.sys) allows local users to cause a denial of service (BSOD) via cr...
CVE-2020-10234MEDIUM6.5The AscRegistryFilter.sys kernel driver in IObit Advanced SystemCare 13.2 allows an unprivileged user to send an IOCTL t...
CVE-2020-18737MEDIUM6.1An issue was discovered in Typora 0.9.67. There is an XSS vulnerability that causes Remote Code Execution.
CVE-2020-4832MEDIUM5.5IBM PowerHA 7.2 could allow a local attacker to obtain sensitive information from temporary directories after a discover...
CVE-2020-8807MEDIUM5.3In Electric Coin Company Zcashd before 2.1.1-1, the time offset between messages could be leveraged to obtain sensitive ...
CVE-2020-36241MEDIUM5.5autoar-extractor.c in GNOME gnome-autoar through 0.2.4, as used by GNOME Shell, Nautilus, and other software, allows Dir...
CVE-2020-10538MEDIUM5.5An issue was discovered in Epikur before 20.1.1. It stores the secret passwords of the users as MD5 hashes in the databa...
CVE-2020-5032MEDIUM4.3IBM QRadar SIEM 7.3 and 7.4 in some configurations may be vulnerable to a temporary denial of service attack when sent p...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now