2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2020-15801CRITICAL9.8In Python 3.8.4, sys.path restrictions specified in a python38._pth file are ignored, allowing code to be loaded from ar...
CVE-2020-9682CRITICAL9.8Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability. Successful...
CVE-2020-9671CRITICAL9.8Adobe Creative Cloud Desktop Application versions 5.1 and earlier have an insecure file permissions vulnerability. Succe...
CVE-2020-9670CRITICAL9.8Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a symlink vulnerability vulnerability. Successful...
CVE-2020-9669CRITICAL9.8Adobe Creative Cloud Desktop Application versions 5.1 and earlier have a lack of exploit mitigations vulnerability. Succ...
CVE-2020-11982CRITICAL9.8An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attack can connect to ...
CVE-2020-11981CRITICAL9.8An issue was found in Apache Airflow versions 1.10.10 and below. When using CeleryExecutor, if an attacker can connect t...
CVE-2020-12013CRITICAL9.1A specially crafted WCF client that interfaces to the may allow the execution of certain arbitrary SQL commands remotely...
CVE-2020-12007CRITICAL9.8A specially crafted communication packet sent to the affected devices could allow remote code execution and a denial-of-...
CVE-2020-12011CRITICAL9.8A specially crafted communication packet sent to the affected systems could cause a denial-of-service condition or allow...
CVE-2020-3357CRITICAL9.8A vulnerability in the Secure Sockets Layer (SSL) VPN feature of Cisco Small Business RV340, RV340W, RV345, and RV345P D...
CVE-2020-3331CRITICAL9.8A vulnerability in the web-based management interface of Cisco RV110W Wireless-N VPN Firewall and Cisco RV215W Wireless-...
CVE-2020-3330CRITICAL9.8A vulnerability in the Telnet service of Cisco Small Business RV110W Wireless-N VPN Firewall Routers could allow an unau...
CVE-2020-3323CRITICAL9.8A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers ...
CVE-2020-3144CRITICAL9.8A vulnerability in the web-based management interface of the Cisco RV110W Wireless-N VPN Firewall, RV130 VPN Router, RV1...
CVE-2020-3140CRITICAL9.8A vulnerability in the web management interface of Cisco Prime License Manager (PLM) Software could allow an unauthentic...
CVE-2020-15027CRITICAL9.8ConnectWise Automate through 2020.x has insufficient validation on certain authentication paths, allowing authentication...
CVE-2020-14000CRITICAL9.8MIT Lifelong Kindergarten Scratch scratch-vm before 0.2.0-prerelease.20200714185213 loads extension URLs from untrusted ...
CVE-2020-10288CRITICAL9.8IRC5 exposes an ftp server (port 21). Upon attempting to gain access you are challenged with a request of username and p...
CVE-2020-10287CRITICAL9.8The IRC5 family with UAS service enabled comes by default with credentials that can be found on publicly available manua...
CVE-2020-10285CRITICAL9.8The authentication implementation on the xArm controller has very low entropy, making it vulnerable to a brute-force att...
CVE-2020-12684CRITICAL9.8XXE injection can occur in i-net Clear Reports 2019 19.0.287 (Designer), as used in i-net HelpDesk and other products, w...
CVE-2020-11436CRITICAL9LibreHealth EMR v2.0.0 is vulnerable to XSS that results in the ability to force arbitrary actions on behalf of other us...
CVE-2020-10284CRITICAL9.1No authentication is required to control the robot inside the network, moreso the latest available user manual shows an ...
CVE-2020-14705CRITICAL9.6Vulnerability in the Oracle GoldenGate product of Oracle GoldenGate (component: Process Management). The supported versi...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now