2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-7478HIGH7.5A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the se...
CVE-2020-7477HIGH7.5A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module ...
CVE-2020-7476HIGH7.8A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could ...
CVE-2020-5722CRITICAL9.8The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafte...
CVE-2020-10871MEDIUM5.3In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOT...
CVE-2020-10870MEDIUM5.5Zim through 0.72.1 creates temporary directories with predictable names. A malicious user could predict and create Zim's...
CVE-2020-7475CRITICAL9.8A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective...
CVE-2020-7474HIGH7.8A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PME...
CVE-2020-8876MEDIUM5.5This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-...
CVE-2020-8875HIGH8.8This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4...
CVE-2020-8874MEDIUM6.7This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4...
CVE-2020-8873MEDIUM6.7This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4...
CVE-2020-8872MEDIUM4.4This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt...
CVE-2020-8871MEDIUM6.7This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-4...
CVE-2020-9392HIGH7.3An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permiss...
CVE-2020-8838MEDIUM6.4An issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not vali...
CVE-2020-9760CRITICAL9.8An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected). When a new IRC message 005 is received with...
CVE-2020-9759HIGH7.8A Vulnerability of LG Electronic web OS TV Emulator could allow an attacker to escalate privileges and overwrite certain...
CVE-2020-8511HIGH7.2In Artica Pandora FMS through 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the File Rep...
CVE-2020-7935HIGH7.2Artica Pandora FMS through 7.42 is vulnerable to remote PHP code execution because of an Unrestricted Upload Of A File W...
CVE-2020-6449HIGH8.8Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6429HIGH8.8Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6428HIGH8.8Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6427HIGH8.8Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co...
CVE-2020-6426MEDIUM6.5Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially expl...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now