2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-25163 | HIGH | 7.3 | 0.9% | Apr 18, 2022 | A remote attacker with write access to PI ProcessBook files could inject code that is imported into OSIsoft PI Vision 20... |
| CVE-2020-13590 | HIGH | 7.2 | 0.8% | Apr 18, 2022 | Multiple exploitable SQL injection vulnerabilities exist in the 'entities/fields' page of the Rukovoditel Project Manage... |
| CVE-2020-13567 | CRITICAL | 9.8 | 2.3% | Apr 18, 2022 | Multiple SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL inject... |
| CVE-2020-13495 | MEDIUM | 5.5 | 0.7% | Apr 18, 2022 | An exploitable vulnerability exists in the way Pixar OpenUSD 20.05 handles file offsets in binary USD files. A specially... |
| CVE-2020-25168 | LOW | 3.3 | 0.2% | Apr 14, 2022 | Hard-coded credentials in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplu... |
| CVE-2020-25166 | HIGH | 7.1 | 0.4% | Apr 14, 2022 | An improper verification of the cryptographic signature of firmware updates of the B. Braun Melsungen AG SpaceCom Versio... |
| CVE-2020-25164 | HIGH | 7.5 | 0.6% | Apr 14, 2022 | A vulnerability in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactplus Versi... |
| CVE-2020-25162 | HIGH | 7.5 | 1.8% | Apr 14, 2022 | A XPath injection vulnerability in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module c... |
| CVE-2020-25160 | MEDIUM | 6.3 | 0.2% | Apr 14, 2022 | Improper access controls in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module compactp... |
| CVE-2020-25158 | MEDIUM | 6.1 | 0.8% | Apr 14, 2022 | A reflected cross-site scripting (XSS) vulnerability in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, ... |
| CVE-2020-25156 | HIGH | 7.2 | 1.1% | Apr 14, 2022 | Active debug code in the B. Braun Melsungen AG SpaceCom Version L8/U61, and the Data module compactplus Versions A10 and... |
| CVE-2020-25154 | MEDIUM | 6.1 | 0.6% | Apr 14, 2022 | An open redirect vulnerability in the administrative interface of the B. Braun Melsungen AG SpaceCom device Version L81/... |
| CVE-2020-25152 | HIGH | 8.1 | 1.2% | Apr 14, 2022 | A session fixation vulnerability in the B. Braun Melsungen AG SpaceCom administrative interface Version L81/U61 and earl... |
| CVE-2020-25150 | HIGH | 8.8 | 1.4% | Apr 14, 2022 | A relative path traversal attack in the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier, and the Data module ... |
| CVE-2020-16238 | MEDIUM | 6.7 | 0.2% | Apr 14, 2022 | A vulnerability in the configuration import mechanism of the B. Braun Melsungen AG SpaceCom Version L81/U61 and earlier,... |
| CVE-2020-29653 | MEDIUM | 6.1 | 1.4% | Apr 13, 2022 | Froxlor through 0.10.22 does not perform validation on user input passed in the customermail GET parameter. The value of... |
| CVE-2020-4668 | HIGH | 8.8 | 0.4% | Apr 8, 2022 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.5, 6.1.0.0 through 6.1.0.3, and 6.1.1.0 is vulnerable... |
| CVE-2020-27376 | HIGH | 8.8 | 1.0% | Apr 7, 2022 | Dr Trust USA iCheck Connect BP Monitor BP Testing 118 version 1.2.1 is vulnerable to Missing Authentication. |
| CVE-2020-27375 | MEDIUM | 6.5 | 0.7% | Apr 7, 2022 | Dr Trust USA iCheck Connect BP Monitor BP Testing 118 version 1.2.1 is vulnerable to Transmitting Write Requests and Cha... |
| CVE-2020-27374 | HIGH | 7.5 | 0.9% | Apr 7, 2022 | Dr Trust USA iCheck Connect BP Monitor BP Testing 118 1.2.1 is vulnerable to a Replay Attack to BP Monitoring. |
| CVE-2020-27373 | HIGH | 8.8 | 1.1% | Apr 7, 2022 | Dr Trust USA iCheck Connect BP Monitor BP Testing 118 1.2.1 is vulnerable to Plain text command over BLE. |
| CVE-2020-22253 | CRITICAL | 9.8 | 1.1% | Apr 6, 2022 | Xiongmai Technology Co devices AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2... |
| CVE-2020-29013 | MEDIUM | 5.4 | 0.6% | Apr 6, 2022 | An improper input validation vulnerability in the sniffer interface of FortiSandbox before 3.2.2 may allow an authentica... |
| CVE-2020-28847 | MEDIUM | 5.4 | 0.5% | Apr 5, 2022 | Cross Site Scripting (XSS) vulnerability in xCss Valine v1.4.14 via the nick parameter to /classes/Comment. |
| CVE-2020-23349 | HIGH | 7.5 | 0.8% | Apr 5, 2022 | An intent redirection issue was doscovered in Sina Weibo Android SDK 4.2.7 (com.sina.weibo.sdk.share.WbShareTransActivit... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now