2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-35745 | HIGH | 8.8 | 1.7% | Jan 7, 2021 | PHPGURUKUL Hospital Management System V 4.0 does not properly restrict access to admin/dashboard.php, which allows attac... |
| CVE-2020-6656 | HIGH | 7.8 | 2.7% | Jan 7, 2021 | Eaton's easySoft software v7.xx prior to v7.22 are susceptible to file parsing type confusion remote code execution vuln... |
| CVE-2020-6655 | HIGH | 7.8 | 2.7% | Jan 7, 2021 | The Eaton's easySoft software v7.xx prior to v7.22 are susceptible to Out-of-bounds remote code execution vulnerability.... |
| CVE-2020-4898 | HIGH | 7.5 | 0.8% | Jan 7, 2021 | IBM Emptoris Strategic Supply Management 10.1.3 uses weaker than expected cryptographic algorithms that could allow an a... |
| CVE-2020-13573 | HIGH | 7.5 | 3.4% | Jan 7, 2021 | A denial-of-service vulnerability exists in the Ethernet/IP server functionality of Rockwell Automation RSLinx Classic 2... |
| CVE-2020-28672 | HIGH | 7.2 | 11.7% | Jan 7, 2021 | MonoCMS Blog 1.0 is affected by incorrect access control that can lead to remote arbitrary code execution. At monofiles/... |
| CVE-2020-26773 | HIGH | 8.8 | 1.6% | Jan 7, 2021 | Restaurant Reservation System 1.0 suffers from an authenticated SQL injection vulnerability, which allows a remote, auth... |
| CVE-2020-35114 | HIGH | 8.8 | 1.0% | Jan 7, 2021 | Mozilla developers reported memory safety bugs present in Firefox 83. Some of these bugs showed evidence of memory corru... |
| CVE-2020-35113 | HIGH | 8.8 | 1.3% | Jan 7, 2021 | Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evi... |
| CVE-2020-35112 | HIGH | 8.8 | 1.3% | Jan 7, 2021 | If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there wa... |
| CVE-2020-26974 | HIGH | 8.8 | 1.5% | Jan 7, 2021 | When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object could have been incorrectly cast to the wron... |
| CVE-2020-26973 | HIGH | 8.8 | 1.6% | Jan 7, 2021 | Certain input to the CSS Sanitizer confused it, resulting in incorrect components being removed. This could have been us... |
| CVE-2020-26971 | HIGH | 8.8 | 1.9% | Jan 7, 2021 | Certain blit values provided by the user were not properly constrained leading to a heap buffer overflow on some video d... |
| CVE-2020-36183 | HIGH | 8.1 | 4.9% | Jan 7, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36182 | HIGH | 8.1 | 5.0% | Jan 7, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36180 | HIGH | 8.1 | 5.0% | Jan 7, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36179 | HIGH | 8.1 | 20.9% | Jan 7, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36189 | HIGH | 8.1 | 4.9% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36188 | HIGH | 8.1 | 10.9% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36187 | HIGH | 8.1 | 5.2% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36186 | HIGH | 8.1 | 5.2% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36185 | HIGH | 8.1 | 5.2% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36184 | HIGH | 8.1 | 10.4% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-36181 | HIGH | 8.1 | 5.0% | Jan 6, 2021 | FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, rela... |
| CVE-2020-8265 | HIGH | 8.1 | 9.0% | Jan 6, 2021 | Node.js versions before 10.23.1, 12.20.1, 14.15.4, 15.5.1 are vulnerable to a use-after-free bug in its TLS implementati... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now