2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-10112 | MEDIUM | 5.4 | 1.4% | Mar 6, 2020 | Citrix Gateway 11.1, 12.0, and 12.1 allows Cache Poisoning. NOTE: Citrix disputes this as not a vulnerability. By defaul... |
| CVE-2020-10111 | HIGH | 7.5 | 1.9% | Mar 6, 2020 | Citrix Gateway 11.1, 12.0, and 12.1 has an Inconsistent Interpretation of HTTP Requests. NOTE: Citrix disputes the repor... |
| CVE-2020-10110 | MEDIUM | 5.3 | 2.6% | Mar 6, 2020 | Citrix Gateway 11.1, 12.0, and 12.1 allows Information Exposure Through Caching. NOTE: Citrix disputes this as not a vul... |
| CVE-2020-7212 | HIGH | 7.5 | 3.3% | Mar 6, 2020 | The _encode_invalid_chars function in util/url.py in the urllib3 library 1.25.2 through 1.25.7 for Python allows a denia... |
| CVE-2020-10193 | HIGH | 7.5 | 1.4% | Mar 6, 2020 | ESET Archive Support Module before 1294 allows virus-detection bypass via crafted RAR Compression Information in an arch... |
| CVE-2020-9458 | HIGH | 8.8 | 2.5% | Mar 6, 2020 | In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the export function allows remote authenticated users (wi... |
| CVE-2020-9457 | HIGH | 8.8 | 2.5% | Mar 6, 2020 | The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) t... |
| CVE-2020-9456 | HIGH | 8.8 | 2.5% | Mar 6, 2020 | In the RegistrationMagic plugin through 4.6.0.3 for WordPress, the user controller allows remote authenticated users (wi... |
| CVE-2020-9455 | MEDIUM | 4.3 | 1.4% | Mar 6, 2020 | The RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote authenticated users (with minimal privileges) t... |
| CVE-2020-9454 | HIGH | 8.8 | 1.1% | Mar 6, 2020 | A CSRF vulnerability in the RegistrationMagic plugin through 4.6.0.3 for WordPress allows remote attackers to forge requ... |
| CVE-2020-8113 | CRITICAL | 9.8 | 1.4% | Mar 6, 2020 | GitLab 10.7 and later through 12.7.2 has Incorrect Access Control. |
| CVE-2020-9531 | HIGH | 7.3 | 1.3% | Mar 6, 2020 | An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. In the Web resources of GetApps(com.xiaomi.mipicks), t... |
| CVE-2020-9530 | MEDIUM | 6.5 | 1.5% | Mar 6, 2020 | An issue was discovered on Xiaomi MIUI V11.0.5.0.QFAEUXM devices. The export component of GetApps(com.xiaomi.mipicks) mi... |
| CVE-2020-10189 | CRITICAL | 9.8 | 99.9% | Mar 6, 2020 | Zoho ManageEngine Desktop Central before 10.0.474 allows remote code execution because of deserialization of untrusted d... |
| CVE-2020-9756 | HIGH | 7.8 | 0.5% | Mar 6, 2020 | Patriot Viper RGB Driver 1.1 and prior exposes IOCTL and allows insufficient access control. The IOCTL Codes 0x80102050 ... |
| CVE-2020-10188 | CRITICAL | 9.8 | 74.5% | Mar 6, 2020 | utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or... |
| CVE-2020-7975 | — | — | — | Mar 6, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2020-10185 | HIGH | 8.6 | 1.5% | Mar 5, 2020 | The sync endpoint in YubiKey Validation Server before 2.40 allows remote attackers to replay an OTP. NOTE: this issue is... |
| CVE-2020-10184 | HIGH | 7.5 | 1.5% | Mar 5, 2020 | The verify endpoint in YubiKey Validation Server before 2.40 does not check the length of SQL queries, which allows remo... |
| CVE-2020-6986 | HIGH | 7.5 | 1.5% | Mar 5, 2020 | In all versions of Omron PLC CJ Series, an attacker can send a series of specific data packets within a short period, ca... |
| CVE-2020-6971 | HIGH | 7.8 | 0.3% | Mar 5, 2020 | In Emerson ValveLink v12.0.264 to v13.4.118, a vulnerability in the ValveLink software may allow a local, unprivileged, ... |
| CVE-2020-5957 | HIGH | 7.8 | 0.3% | Mar 5, 2020 | NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which... |
| CVE-2020-5405 | MEDIUM | 6.5 | 68.5% | Mar 5, 2020 | Spring Cloud Config, versions 2.2.x prior to 2.2.2, versions 2.1.x prior to 2.1.7, and older unsupported versions allow ... |
| CVE-2020-4083 | MEDIUM | 5.5 | 0.3% | Mar 5, 2020 | HCL Connections 6.5 is vulnerable to possible information leakage. Connections could disclose sensitive information via ... |
| CVE-2020-4082 | MEDIUM | 5.4 | 0.7% | Mar 5, 2020 | The HCL Connections 5.5 help system is vulnerable to cross-site scripting, caused by improper validation of user-supplie... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now