2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-3652 | CRITICAL | 9.1 | 0.9% | Apr 16, 2020 | Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack... |
| CVE-2020-3250 | CRITICAL | 9.8 | 60.2% | Apr 15, 2020 | Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r... |
| CVE-2020-3248 | CRITICAL | 9.8 | 73.9% | Apr 15, 2020 | Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r... |
| CVE-2020-3247 | CRITICAL | 9.8 | 75.1% | Apr 15, 2020 | Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r... |
| CVE-2020-3243 | CRITICAL | 9.8 | 88.4% | Apr 15, 2020 | Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r... |
| CVE-2020-11658 | CRITICAL | 9.8 | 2.0% | Apr 15, 2020 | CA API Developer Portal 4.3.1 and earlier handles shared secret keys in an insecure manner, which allows attackers to by... |
| CVE-2020-3161 | CRITICAL | 9.8 | 83.7% | Apr 15, 2020 | A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code wi... |
| CVE-2020-6996 | CRITICAL | 9.8 | 1.3% | Apr 15, 2020 | Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source ... |
| CVE-2020-11799 | CRITICAL | 9.8 | 1.2% | Apr 15, 2020 | Z-Cron 5.6 Build 04 allows an unprivileged attacker to elevate privileges by modifying a privileged user's task. This ca... |
| CVE-2020-10611 | CRITICAL | 9.8 | 5.2% | Apr 15, 2020 | Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to e... |
| CVE-2020-11790 | CRITICAL | 9.8 | 2.4% | Apr 15, 2020 | NETGEAR R7800 devices before 1.0.2.68 are affected by remote code execution by unauthenticated attackers. |
| CVE-2020-11789 | CRITICAL | 9.8 | 2.7% | Apr 15, 2020 | Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1.... |
| CVE-2020-11729 | CRITICAL | 9.8 | 1.9% | Apr 15, 2020 | An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Long-term session cookies, uses to provide... |
| CVE-2020-1026 | CRITICAL | 9.8 | 2.5% | Apr 15, 2020 | A Security Feature Bypass vulnerability exists in the MSR JavaScript Cryptography Library that is caused by multiple bug... |
| CVE-2020-11537 | CRITICAL | 9.8 | 1.5% | Apr 15, 2020 | A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries ... |
| CVE-2020-11536 | CRITICAL | 9.8 | 2.6% | Apr 15, 2020 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit t... |
| CVE-2020-11535 | CRITICAL | 9.8 | 2.3% | Apr 15, 2020 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit X... |
| CVE-2020-11534 | CRITICAL | 9.8 | 2.2% | Apr 15, 2020 | An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit t... |
| CVE-2020-2961 | CRITICAL | 9.8 | 1.8% | Apr 15, 2020 | Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Discovery Framewo... |
| CVE-2020-2953 | CRITICAL | 9.8 | 2.1% | Apr 15, 2020 | Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications... |
| CVE-2020-2950 | CRITICAL | 9.8 | 71.0% | Apr 15, 2020 | Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Ana... |
| CVE-2020-2931 | CRITICAL | 9.8 | 2.7% | Apr 15, 2020 | Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Web Applications - InfoCenter). Supported ... |
| CVE-2020-2915 | CRITICAL | 9.8 | 2.0% | Apr 15, 2020 | Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching, CacheStore, Invocation). ... |
| CVE-2020-2884 | CRITICAL | 9.8 | 2.2% | Apr 15, 2020 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th... |
| CVE-2020-2883 | CRITICAL | 9.8 | 94.9% | Apr 15, 2020 | Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now