2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-2172 | MEDIUM | 6.5 | 1.1% | Apr 7, 2020 | Jenkins Code Coverage API Plugin 1.1.4 and earlier does not configure its XML parser to prevent XML external entity (XXE... |
| CVE-2020-8096 | MEDIUM | 5.3 | 0.3% | Apr 7, 2020 | Untrusted Search Path vulnerability in Bitdefender High-Level Antimalware SDK for Windows allows an attacker to load thi... |
| CVE-2020-11587 | HIGH | 7.5 | 1.2% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request a... |
| CVE-2020-11586 | CRITICAL | 9.8 | 1.2% | Apr 6, 2020 | An XXE issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API reque... |
| CVE-2020-11599 | HIGH | 7.5 | 1.1% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 6.80 Build 2016031401. GetDistributedPOP3 allows attackers to obtain the us... |
| CVE-2020-11598 | CRITICAL | 9.8 | 2.5% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. Upload.ashx allows remote attackers to execute arbitr... |
| CVE-2020-11597 | CRITICAL | 9.8 | 1.5% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST req... |
| CVE-2020-11596 | HIGH | 7.5 | 1.8% | Apr 6, 2020 | A Directory Traversal issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can ma... |
| CVE-2020-11595 | HIGH | 7.5 | 1.2% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request a... |
| CVE-2020-11594 | HIGH | 7.5 | 1.2% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request t... |
| CVE-2020-11593 | HIGH | 7.5 | 1.0% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP POST req... |
| CVE-2020-11592 | HIGH | 7.5 | 1.2% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request a... |
| CVE-2020-11591 | MEDIUM | 5.3 | 1.0% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an API request a... |
| CVE-2020-11590 | MEDIUM | 5.3 | 1.0% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET requ... |
| CVE-2020-11589 | HIGH | 7.5 | 1.1% | Apr 6, 2020 | An Insecure Direct Object Reference issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated a... |
| CVE-2020-11588 | MEDIUM | 5.3 | 1.0% | Apr 6, 2020 | An issue was discovered in CIPPlanner CIPAce 9.1 Build 2019092801. An unauthenticated attacker can make an HTTP GET requ... |
| CVE-2020-11585 | MEDIUM | 4.3 | 0.7% | Apr 6, 2020 | There is an information disclosure issue in DNN (formerly DotNetNuke) 9.5 within the built-in Activity-Feed/Messaging/Us... |
| CVE-2020-11582 | HIGH | 8.8 | 0.8% | Apr 6, 2020 | An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed ... |
| CVE-2020-11581 | HIGH | 8.1 | 9.8% | Apr 6, 2020 | An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed ... |
| CVE-2020-11580 | CRITICAL | 9.1 | 1.1% | Apr 6, 2020 | An issue was discovered in Pulse Secure Pulse Connect Secure (PCS) through 2020-04-06. The applet in tncc.jar, executed ... |
| CVE-2020-5832 | HIGH | 7.8 | 0.4% | Apr 6, 2020 | Symantec Data Center Security Manager Component, prior to 6.8.2 (aka 6.8 MP2), may be susceptible to a privilege escalat... |
| CVE-2020-5300 | MEDIUM | 5.3 | 1.0% | Apr 6, 2020 | In Hydra (an OAuth2 Server and OpenID Certified™ OpenID Connect Provider written in Go), before version 1.4.0+oryOS.17, ... |
| CVE-2020-11545 | CRITICAL | 9.8 | 1.6% | Apr 6, 2020 | Project Worlds Official Car Rental System 1 is vulnerable to multiple SQL injection issues, as demonstrated by the email... |
| CVE-2020-11544 | HIGH | 7.2 | 1.1% | Apr 6, 2020 | An issue was discovered in Project Worlds Official Car Rental System 1. It allows the admin user to run commands on the ... |
| CVE-2020-11507 | HIGH | 7.8 | 0.8% | Apr 6, 2020 | An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner 8.0.3 could cause arbitrary code execution with SYSTEM... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now