2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-1879LOW3.9There is an improper integrity checking vulnerability on some huawei products. The software of the affected product has ...
CVE-2020-1878MEDIUM5.5Huawei smartphone OxfordS-AN00A with versions earlier than 10.0.1.152D(C735E152R3P3),versions earlier than 10.0.1.160(C0...
CVE-2020-1864HIGH8.1Some Huawei products have a security vulnerability due to improper authentication. A remote attacker needs to obtain som...
CVE-2020-1862LOW3.3There is a double free vulnerability in some Huawei products. A local attacker with low privilege may perform some opera...
CVE-2020-1796MEDIUM6.6There is an improper authorization vulnerability in several smartphones. The software incorrectly performs an authorizat...
CVE-2020-1795LOW2.4There is a logic error vulnerability in several smartphones. The software does not properly restrict certain operation w...
CVE-2020-1794MEDIUM4.6There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient auth...
CVE-2020-1793MEDIUM4.6There is an improper authentication vulnerability in several smartphones. The applock does not perform a sufficient auth...
CVE-2020-1709HIGH7.8A vulnerability was found in all openshift/mediawiki 4.x.x versions prior to 4.3.0, where an insecure modification vulne...
CVE-2020-1707HIGH7A vulnerability was found in all openshift/postgresql-apb 4.x.x versions prior to 4.3.0, where an insecure modification ...
CVE-2020-1696MEDIUM5.4A flaw was found in the all pki-core 10.x.x versions, where Token Processing Service (TPS) where it did not properly san...
CVE-2020-10597HIGH7.1Delta Industrial Automation DOPSoft, Version 4.00.08.15 and prior. Multiple out-of-bounds read vulnerabilities may be ex...
CVE-2020-10682HIGH7.8The Filemanager in CMS Made Simple 2.2.13 allows remote code execution via a .php.jpegd JPEG file, as demonstrated by m1...
CVE-2020-10681MEDIUM5.4The Filemanager in CMS Made Simple 2.2.13 has stored XSS via a .pxd file, as demonstrated by m1_files[] to admin/modulei...
CVE-2020-9345MEDIUM6.5An issue was discovered in signotec signoPAD-API/Web (formerly Websocket Pad Server) before 3.1.1 on Windows. It is poss...
CVE-2020-9344MEDIUM6.1Subversion ALM for the enterprise before 8.8.2 allows reflected XSS at multiple locations.
CVE-2020-9343MEDIUM6.5An issue was discovered in signotec signoPAD-API/Web (formerly Websocket Pad Server) before 3.1.1 on Windows. It is poss...
CVE-2020-10669HIGH7.5The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to authentication bypass on the...
CVE-2020-7006HIGH8.4Systech Corporation NDS-5000 Terminal Server, NDS/5008 (8 Port, RJ45), firmware Version 02D.30. Successful exploitation ...
CVE-2020-10671HIGH8.8The Canon Oce Colorwave 500 4.0.0.0 printer's web application is missing any form of CSRF protections. This is a system-...
CVE-2020-10670MEDIUM6.1The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Reflected XSS in the paramet...
CVE-2020-10668MEDIUM6.1The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Reflected XSS in /home.jsp. ...
CVE-2020-10667MEDIUM6.1The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Stored XSS in /TemplateManag...
CVE-2020-5267MEDIUM4.8In ActionView before versions 6.0.2.2 and 5.2.4.2, there is a possible XSS vulnerability in ActionView's JavaScript lite...
CVE-2020-5262MEDIUM5.5In EasyBuild before version 4.1.2, the GitHub Personal Access Token (PAT) used by EasyBuild for the GitHub integration f...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now