2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-6980LOW3.3Rockwell Automation MicroLogix 1400 Controllers Series B v21.001 and prior, Series A, all versions, MicroLogix 1100 Cont...
CVE-2020-6586MEDIUM5.4Nagios Log Server 2.1.3 allows XSS by visiting /profile and entering a crafted name field that is mishandled on the /adm...
CVE-2020-6585HIGH8.8Nagios Log Server 2.1.3 has CSRF.
CVE-2020-6584MEDIUM6.5Nagios Log Server 2.1.3 has Incorrect Access Control.
CVE-2020-1740MEDIUM4.7A flaw was found in Ansible Engine when using Ansible Vault for editing encrypted files. When a user executes "ansible-v...
CVE-2020-1738LOW3.9A flaw was found in Ansible Engine when the module package or service is used and the parameter 'use' is not specified. ...
CVE-2020-1736LOW3.3A flaw was found in Ansible Engine when a file is moved using atomic_move primitive as the file mode cannot be specified...
CVE-2020-1735MEDIUM4.6A flaw was found in the Ansible Engine when the fetch module is used. An attacker could intercept the module, inject a n...
CVE-2020-10243CRITICAL9.8An issue was discovered in Joomla! before 3.9.16. The lack of type casting of a variable in a SQL statement leads to a S...
CVE-2020-10242MEDIUM6.1An issue was discovered in Joomla! before 3.9.16. Inadequate handling of CSS selectors in the Protostar and Beez3 JavaSc...
CVE-2020-10241HIGH8.8An issue was discovered in Joomla! before 3.9.16. Missing token checks in the image actions of com_templates lead to CSR...
CVE-2020-10240MEDIUM5.3An issue was discovered in Joomla! before 3.9.16. Missing length checks in the user table can lead to the creation of us...
CVE-2020-10239HIGH8.8An issue was discovered in Joomla! before 3.9.16. Incorrect Access Control in the SQL fieldtype of com_fields allows acc...
CVE-2020-10238HIGH7.5An issue was discovered in Joomla! before 3.9.16. Various actions in com_templates lack the required ACL checks, leading...
CVE-2020-10230CRITICAL9.8CentOS-WebPanel.com (aka CWP) CentOS Web Panel (for CentOS 6 and 7) allows SQL Injection via the /cwp_{SESSION_HASH}/adm...
CVE-2020-1753MEDIUM5.5A security flaw was found in Ansible Engine, all Ansible 2.7.x versions prior to 2.7.17, all Ansible 2.8.x versions prio...
CVE-2020-10557HIGH8.8An issue was discovered in AContent through 1.4. It allows the user to run commands on the server with a low-privileged ...
CVE-2020-9518MEDIUM5.3Login filter can access configuration files vulnerability in Micro Focus Service Manager (Web Tier), affecting versions ...
CVE-2020-9519MEDIUM5.3HTTP methods reveled in Web services vulnerability in Micro Focus Service manager (server), affecting versions 9.40, 9.4...
CVE-2020-5547CRITICAL9.8Resource Management Errors vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 seri...
CVE-2020-5546HIGH8.8Improper Neutralization of Argument Delimiters in a Command ('Argument Injection') vulnerability in TCP function include...
CVE-2020-5545CRITICAL9.8TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and ear...
CVE-2020-5544CRITICAL9.8Null Pointer Dereference vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series...
CVE-2020-5543CRITICAL9.8TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D firmware version 1.0.7 and ear...
CVE-2020-5542CRITICAL9.8Buffer error vulnerability in TCP function included in the firmware of Mitsubishi Electric MELQIC IU1 series IU1-1M20-D ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now