2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-35478MEDIUM6.1MediaWiki before 1.35.1 allows XSS via BlockLogFormatter.php. MediaWiki:blanknamespace potentially can be output as raw ...
CVE-2020-35477MEDIUM5.3MediaWiki before 1.35.1 blocks legitimate attempts to hide log entries in some situations. If one sets MediaWiki:Mainpag...
CVE-2020-35474MEDIUM6.1In MediaWiki before 1.35.1, the combination of Html::rawElement and Message::text leads to XSS because the definition of...
CVE-2020-27340MEDIUM6.1The online help portal of Mitel MiCollab before 9.2 could allow an attacker to redirect a user to an unauthorized websit...
CVE-2020-25612MEDIUM4.9The NuPoint Messenger of Mitel MiCollab before 9.2 could allow an attacker with escalated privilege to access user files...
CVE-2020-25611MEDIUM6.1The AWV portal of Mitel MiCollab before 9.2 could allow an attacker to gain access to conference information by sending ...
CVE-2020-25610MEDIUM5.3The AWV component of Mitel MiCollab before 9.2 could allow an attacker to gain access to a web conference due to insuffi...
CVE-2020-25609MEDIUM5.4The NuPoint Messenger Portal of Mitel MiCollab before 9.2 could allow an authenticated attacker to execute arbitrary scr...
CVE-2020-25606MEDIUM6.1The AWV component of Mitel MiCollab before 9.2 could allow an attacker to view system information by sending arbitrary c...
CVE-2020-13528MEDIUM5.3An information disclosure vulnerability exists in the Web Manager and telnet CLI functionality of Lantronix XPort EDGE 3...
CVE-2020-13527MEDIUM4.5An authentication bypass vulnerability exists in the Web Manager functionality of Lantronix XPort EDGE 3.0.0.0R11, 3.1.0...
CVE-2020-13518MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c402084 functionality of NZXT CAM 4.8.0....
CVE-2020-13517MEDIUM5.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406104 functionality of NZXT CAM 4.8.0....
CVE-2020-13516MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver IRP 0x9c406144 functionality of NZXT CAM 4.8.0....
CVE-2020-13511MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-13510MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-13509MEDIUM6.5An information disclosure vulnerability exists in the WinRing0x64 Driver Privileged I/O Read IRPs functionality of NZXT ...
CVE-2020-20142MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the "To Remote CSV" component under "Open" Menu in Flexmonster Pivot Table &...
CVE-2020-20141MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the To OLAP (XMLA) component Under the Connect menu in Flexmonster Pivot Tab...
CVE-2020-20140MEDIUM6.1Cross Site Scripting (XSS) vulnerability in Remote Report component under the Open menu in Flexmonster Pivot Table & Cha...
CVE-2020-20139MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the Remote JSON component Under the Connect menu in Flexmonster Pivot Table ...
CVE-2020-20138MEDIUM6.1Cross Site Scripting (XSS) vulnerability in the Showtime2 Slideshow module in CMS Made Simple (CMSMS) 2.2.4.
CVE-2020-12521MEDIUM6.5On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS a specially crafted LLDP packet may lead to a high...
CVE-2020-12518MEDIUM5.5On Phoenix Contact PLCnext Control Devices versions before 2021.0 LTS an attacker can use the knowledge gained by readin...
CVE-2020-8462MEDIUM4.8A cross-site scripting (XSS) vulnerability in Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow a...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now