2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-8989MEDIUM5.3In the Voatz application 2020-01-01 for Android, the amount of data transmitted during a single voter's vote depends on ...
CVE-2020-8988MEDIUM5.9The Voatz application 2020-01-01 for Android allows only 100 million different PINs, which makes it easier for attackers...
CVE-2020-0564HIGH7.8Improper permissions in the installer for Intel(R) RWC3 for Windows before version 7.010.009.000 may allow an authentica...
CVE-2020-0563HIGH7.8Improper permissions in the installer for Intel(R) MPSS before version 3.8.6 may allow an authenticated user to potentia...
CVE-2020-0562HIGH7.8Improper permissions in the installer for Intel(R) RWC2, all versions, may allow an authenticated user to potentially en...
CVE-2020-0561HIGH7.8Improper initialization in the Intel(R) SGX SDK before v2.6.100.1 may allow an authenticated user to potentially enable ...
CVE-2020-8981MEDIUM6.1A cross-site scripting (XSS) vulnerability was discovered in the Source Integration plugin before 1.6.2 and 2.x before 2...
CVE-2020-0560HIGH7.8Improper permissions in the installer for the Intel(R) Renesas Electronics(R) USB 3.0 Driver, all versions, may allow an...
CVE-2020-8804MEDIUM6.5SuiteCRM through 7.11.10 allows SQL Injection via the SOAP API, the EmailUIAjax interface, or the MailMerge module.
CVE-2020-8803CRITICAL9.8SuiteCRM through 7.11.11 allows Directory Traversal to include arbitrary .php files within the webroot via add_to_prospe...
CVE-2020-8802CRITICAL9.8SuiteCRM through 7.11.11 has Incorrect Access Control via action_saveHTMLField Bean Manipulation.
CVE-2020-8801HIGH7.2SuiteCRM through 7.11.11 allows PHAR Deserialization.
CVE-2020-8800HIGH8.8SuiteCRM through 7.11.11 allows EmailsControllerActionGetFromFields PHP Object Injection.
CVE-2020-8614CRITICAL9.8An issue was discovered on Askey AP4000W TDC_V1.01.003 devices. An attacker can perform Remote Code Execution (RCE) by s...
CVE-2020-7051MEDIUM6.1Codologic Codoforum through 4.8.4 allows stored XSS in the login area. This is relevant in conjunction with CVE-2020-584...
CVE-2020-3763CRITICAL9.8Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3762CRITICAL9.8Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3760CRITICAL9.8Adobe Digital Editions versions 4.5.10 and below have a command injection vulnerability. Successful exploitation could l...
CVE-2020-3759HIGH7.5Adobe Digital Editions versions 4.5.10 and below have a buffer errors vulnerability. Successful exploitation could lead ...
CVE-2020-3757HIGH8.8Adobe Flash Player versions 32.0.0.321 and earlier, 32.0.0.314 and earlier, 32.0.0.321 and earlier, and 32.0.0.255 and e...
CVE-2020-3756HIGH7.5Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3755HIGH7.5Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3754CRITICAL9.8Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3753HIGH7.5Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...
CVE-2020-3752CRITICAL9.8Adobe Acrobat and Reader versions 2019.021.20061 and earlier, 2017.011.30156 and earlier, 2017.011.30156 and earlier, an...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now