2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-0463HIGH7.5In sdp_server_handle_client_req of sdp_server.cc, there is a possible out of bounds read due to a missing bounds check. ...
CVE-2020-0460HIGH7.5In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly installed certificates d...
CVE-2020-0458HIGH7.8In SPDIFEncoder::writeBurstBufferBytes and related methods of SPDIFEncoder.cpp, there is a possible out of bounds write ...
CVE-2020-0444HIGH7.8In audit_free_lsm_field of auditfilter.c, there is a possible bad kfree due to a logic error in audit_data_to_entry. Thi...
CVE-2020-0440HIGH7.8In createVirtualDisplay of DisplayManagerService.java, there is a possible way to create a trusted virtual display due t...
CVE-2020-0099HIGH7.8In addWindow of WindowManagerService.java, there is a possible window overlay attack due to an insecure default value. T...
CVE-2020-28396HIGH7.3A vulnerability has been identified in SICAM A8000 CP-8000 (All versions < V16), SICAM A8000 CP-8021 (All versions < V16...
CVE-2020-25235HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The password used for a...
CVE-2020-25234HIGH7.7A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All...
CVE-2020-25232HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an ...
CVE-2020-25230HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Due to the usage of an ...
CVE-2020-25229HIGH7.5A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The implemented encrypt...
CVE-2020-15796HIGH7.5A vulnerability has been identified in SIMATIC ET 200SP Open Controller (incl. SIPLUS variants) (V20.8), SIMATIC S7-1500...
CVE-2020-14368HIGH7.1A flaw was found in Eclipse Che in versions prior to 7.14.0 that impacts CodeReady Workspaces. When configured with cook...
CVE-2020-8286HIGH7.5curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verificatio...
CVE-2020-8285HIGH7.5curl 7.21.0 to and including 7.73.0 is vulnerable to uncontrolled recursion due to a stack overflow issue in FTP wildcar...
CVE-2020-8283HIGH8.8An authorised user on a Windows host running Citrix Universal Print Server can perform arbitrary command execution as SY...
CVE-2020-8282HIGH8.8A security issue was found in EdgePower 24V/54V firmware v1.7.0 and earlier where, due to missing CSRF protections, an a...
CVE-2020-8258HIGH7.5Improper privilege management on services run by Citrix Gateway Plug-in for Windows, versions before and including 13.0-...
CVE-2020-8231HIGH7.5Due to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data.
CVE-2020-8177HIGH7.8curl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead to...
CVE-2020-8169HIGH7.5curl 7.62.0 through 7.70.0 is vulnerable to an information disclosure vulnerability that can lead to a partial password ...
CVE-2020-28860HIGH8.8OpenAssetDigital Asset Management (DAM) through 12.0.19 does not correctly sanitize user supplied input, incorporating i...
CVE-2020-27252HIGH8.1Medtronic MyCareLink Smart 25000 is vulnerable to a race condition in the MCL Smart Patient Reader software update sys...
CVE-2020-25183HIGH8.8Medtronic MyCareLink Smart 25000 contains an authentication protocol vulnerability where the method used to authentica...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now