2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-10384HIGH7.8An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.6.1. The...
CVE-2020-7802MEDIUM5.3The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Incorrect Default...
CVE-2020-7801MEDIUM5.3The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Exposure of Sensi...
CVE-2020-7800HIGH8.2The Synergy Systems & Solutions (SSS) HUSKY RTU 6049-E70, with firmware Versions 5.0 and prior, has an Improper Check fo...
CVE-2020-10383CRITICAL9.8An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. The...
CVE-2020-10382HIGH8.8An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. The...
CVE-2020-10381MEDIUM5.3An issue was discovered in the MB CONNECT LINE mymbCONNECT24 and mbCONNECT24 software in all versions through 2.5.0. The...
CVE-2020-7958MEDIUM6An issue was discovered on OnePlus 7 Pro devices before 10.0.3.GM21BA. The firmware was found to contain functionality t...
CVE-2020-9461MEDIUM5.4Octech Oempro 4.7 through 4.11 allow stored XSS by an authenticated user. The FolderName parameter of the Media.CreateFo...
CVE-2020-9460MEDIUM5.4Octech Oempro 4.7 through 4.11 allow XSS by an authenticated user. The parameter CampaignName in Campaign.Create is vuln...
CVE-2020-9004HIGH8.8A remote authenticated authorization-bypass vulnerability in Wowza Streaming Engine 4.8.0 and earlier allows any read-on...
CVE-2020-4151MEDIUM6.5IBM QRadar SIEM 7.3.0 through 7.3.3 could allow an authenticated attacker to perform unauthorized actions due to imprope...
CVE-2020-5739HIGH8.8Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an ...
CVE-2020-5738HIGH8.8Grandstream GXP1600 series firmware 1.0.4.152 and below is vulnerable to authenticated remote command execution when an ...
CVE-2020-11743MEDIUM5.5An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of a bad err...
CVE-2020-11742MEDIUM5.5An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service because of bad conti...
CVE-2020-11741HIGH8.8An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sen...
CVE-2020-11740MEDIUM5.5An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (without active profiling) to obtain ...
CVE-2020-11739HIGH7.8An issue was discovered in Xen through 4.13.x, allowing guest OS users to cause a denial of service or possibly gain pri...
CVE-2020-11738HIGH7.5The Snap Creek Duplicator plugin before 1.3.28 for WordPress (and Duplicator Pro before 3.8.7.1) allows Directory Traver...
CVE-2020-1730MEDIUM5.3A flaw was found in libssh versions before 0.8.9 and before 0.9.4 in the way it handled AES-CTR (or DES ciphers if enabl...
CVE-2020-11736LOW3.9fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lack...
CVE-2020-10646HIGH7.8Fuji Electric V-Server Lite all versions prior to 4.0.9.0 contains a heap based buffer overflow. The buffer allocated to...
CVE-2020-10642HIGH7.8In Rockwell Automation RSLinx Classic versions 4.11.00 and prior, an authenticated local attacker could modify a registr...
CVE-2020-6456MEDIUM6.5Insufficient validation of untrusted input in clipboard in Google Chrome prior to 81.0.4044.92 allowed a local attacker ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now