2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-3827HIGH7.8A memory corruption issue was addressed with improved input validation. This issue is fixed in macOS Catalina 10.15.3. V...
CVE-2020-3826HIGH7.8An out-of-bounds read was addressed with improved input validation. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1,...
CVE-2020-3825HIGH8.8Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iP...
CVE-2020-5402HIGH8.8In Cloud Foundry UAA, versions prior to 74.14.0, a CSRF vulnerability exists due to the OAuth2 state parameter not being...
CVE-2020-5401MEDIUM5.3Cloud Foundry Routing Release, versions prior to 0.197.0, contains GoRouter, which allows malicious clients to send inva...
CVE-2020-5400MEDIUM6.5Cloud Foundry Cloud Controller (CAPI), versions prior to 1.91.0, logs properties of background jobs when they are run, w...
CVE-2020-7043CRITICAL9.1An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL before 1.0.2. tunnel.c mishandles certificate vali...
CVE-2020-7042MEDIUM5.3An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL 1.0.2 or later. tunnel.c mishandles certificate va...
CVE-2020-7041MEDIUM5.3An issue was discovered in openfortivpn 1.11.0 when used with OpenSSL 1.0.2 or later. tunnel.c mishandles certificate va...
CVE-2020-6864MEDIUM6.5ZTE E8820V3 router product is impacted by an information leak vulnerability. Attackers could use this vulnerability to t...
CVE-2020-6863MEDIUM6.5ZTE E8820V3 router product is impacted by a permission and access control vulnerability. Attackers could use this vulner...
CVE-2020-3924CRITICAL9.8DVR firmware in TAT-76 and TAT-77 series of products, provided by TONNET do not properly verify patch files. Attackers c...
CVE-2020-3923CRITICAL9.8DVR firmware in TAT-76 and TAT-77 series of products, provided by TONNET, contain misconfigured authentication mechanism...
CVE-2020-3175HIGH8.6A vulnerability in the resource handling system of Cisco NX-OS Software for Cisco MDS 9000 Series Multilayer Switches co...
CVE-2020-3174MEDIUM4.7A vulnerability in the anycast gateway feature of Cisco NX-OS Software could allow an unauthenticated, adjacent attacker...
CVE-2020-3173HIGH7.8A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, loc...
CVE-2020-3172HIGH8.8A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an u...
CVE-2020-3171HIGH7.8A vulnerability in the local management (local-mgmt) CLI of Cisco FXOS Software and Cisco UCS Manager Software could all...
CVE-2020-3170MEDIUM5.3A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a...
CVE-2020-3169MEDIUM6.7A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to execute arbitrary comm...
CVE-2020-3168HIGH7.5A vulnerability in the Secure Login Enhancements capability of Cisco Nexus 1000V Switch for VMware vSphere could allow a...
CVE-2020-3167HIGH7.8A vulnerability in the CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local att...
CVE-2020-3166MEDIUM6.7A vulnerability in the CLI of Cisco FXOS Software could allow an authenticated, local attacker to read or write arbitrar...
CVE-2020-3165HIGH8.2A vulnerability in the implementation of Border Gateway Protocol (BGP) Message Digest 5 (MD5) authentication in Cisco NX...
CVE-2020-9274HIGH7.5An issue was discovered in Pure-FTPd 1.0.49. An uninitialized pointer vulnerability has been detected in the diraliases ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now