2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-7478 | HIGH | 7.5 | 4.0% | Mar 23, 2020 | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory exists in IGSS (Versions 14 and prior using the se... |
| CVE-2020-7477 | HIGH | 7.5 | 1.3% | Mar 23, 2020 | A CWE-754: Improper Check for Unusual or Exceptional Conditions vulnerability exists in Quantum Ethernet Network module ... |
| CVE-2020-7476 | HIGH | 7.8 | 0.4% | Mar 23, 2020 | A CWE-426: Untrusted Search Path vulnerability exists in ZigBee Installation Kit (Versions prior to 1.0.1), which could ... |
| CVE-2020-5722 | CRITICAL | 9.8 | 83.9% | Mar 23, 2020 | The HTTP interface of the Grandstream UCM6200 series is vulnerable to an unauthenticated remote SQL injection via crafte... |
| CVE-2020-10871 | MEDIUM | 5.3 | 1.7% | Mar 23, 2020 | In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOT... |
| CVE-2020-10870 | MEDIUM | 5.5 | 0.3% | Mar 23, 2020 | Zim through 0.72.1 creates temporary directories with predictable names. A malicious user could predict and create Zim's... |
| CVE-2020-7475 | CRITICAL | 9.8 | 1.5% | Mar 23, 2020 | A CWE-74: Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection'), reflective... |
| CVE-2020-7474 | HIGH | 7.8 | 0.4% | Mar 23, 2020 | A CWE-427: Uncontrolled Search Path Element vulnerability exists in ProSoft Configurator (v1.002 and prior), for the PME... |
| CVE-2020-8876 | MEDIUM | 5.5 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to disclose information on affected installations of Parallels Desktop 15.1.2-... |
| CVE-2020-8875 | HIGH | 8.8 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-8874 | MEDIUM | 6.7 | 0.4% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-8873 | MEDIUM | 6.7 | 0.4% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.2-4... |
| CVE-2020-8872 | MEDIUM | 4.4 | 0.5% | Mar 23, 2020 | This vulnerability allows local attackers to disclose sensitive information on affected installations of Parallels Deskt... |
| CVE-2020-8871 | MEDIUM | 6.7 | 0.6% | Mar 23, 2020 | This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop 15.1.0-4... |
| CVE-2020-9392 | HIGH | 7.3 | 1.7% | Mar 23, 2020 | An issue was discovered in the pricing-table-by-supsystic plugin before 1.8.2 for WordPress. Because there is no permiss... |
| CVE-2020-8838 | MEDIUM | 6.4 | 1.6% | Mar 23, 2020 | An issue was discovered in Zoho ManageEngine AssetExplorer 6.5. During an upgrade of the Windows agent, it does not vali... |
| CVE-2020-9760 | CRITICAL | 9.8 | 2.2% | Mar 23, 2020 | An issue was discovered in WeeChat before 2.7.1 (0.3.4 to 2.7 are affected). When a new IRC message 005 is received with... |
| CVE-2020-9759 | HIGH | 7.8 | 0.5% | Mar 23, 2020 | A Vulnerability of LG Electronic web OS TV Emulator could allow an attacker to escalate privileges and overwrite certain... |
| CVE-2020-8511 | HIGH | 7.2 | 3.1% | Mar 23, 2020 | In Artica Pandora FMS through 7.42, Web Admin users can execute arbitrary code by uploading a .php file via the File Rep... |
| CVE-2020-7935 | HIGH | 7.2 | 3.1% | Mar 23, 2020 | Artica Pandora FMS through 7.42 is vulnerable to remote PHP code execution because of an Unrestricted Upload Of A File W... |
| CVE-2020-6449 | HIGH | 8.8 | 2.7% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6429 | HIGH | 8.8 | 2.3% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6428 | HIGH | 8.8 | 2.3% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6427 | HIGH | 8.8 | 2.4% | Mar 23, 2020 | Use after free in audio in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially exploit heap co... |
| CVE-2020-6426 | MEDIUM | 6.5 | 2.9% | Mar 23, 2020 | Inappropriate implementation in V8 in Google Chrome prior to 80.0.3987.149 allowed a remote attacker to potentially expl... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now