2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2020-3652CRITICAL9.1Possible buffer over-read issue in windows x86 wlan driver function while processing beacon or request frame due to lack...
CVE-2020-3250CRITICAL9.8Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r...
CVE-2020-3248CRITICAL9.8Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r...
CVE-2020-3247CRITICAL9.8Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r...
CVE-2020-3243CRITICAL9.8Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a r...
CVE-2020-11658CRITICAL9.8CA API Developer Portal 4.3.1 and earlier handles shared secret keys in an insecure manner, which allows attackers to by...
CVE-2020-3161CRITICAL9.8A vulnerability in the web server for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code wi...
CVE-2020-6996CRITICAL9.8Triangle MicroWorks DNP3 Outstation LibrariesDNP3 Outstation .NET Protocol components and DNP3 Outstation ANSI C source ...
CVE-2020-11799CRITICAL9.8Z-Cron 5.6 Build 04 allows an unprivileged attacker to elevate privileges by modifying a privileged user's task. This ca...
CVE-2020-10611CRITICAL9.8Triangle MicroWorks SCADA Data Gateway 3.02.0697 through 4.0.122, 2.41.0213 through 4.0.122 allows remote attackers to e...
CVE-2020-11790CRITICAL9.8NETGEAR R7800 devices before 1.0.2.68 are affected by remote code execution by unauthenticated attackers.
CVE-2020-11789CRITICAL9.8Certain NETGEAR devices are affected by command injection by an unauthenticated attacker. This affects R6400v2 before 1....
CVE-2020-11729CRITICAL9.8An issue was discovered in DAViCal Andrew's Web Libraries (AWL) through 0.60. Long-term session cookies, uses to provide...
CVE-2020-1026CRITICAL9.8A Security Feature Bypass vulnerability exists in the MSR JavaScript Cryptography Library that is caused by multiple bug...
CVE-2020-11537CRITICAL9.8A SQL Injection issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can execute arbitrary SQL queries ...
CVE-2020-11536CRITICAL9.8An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit t...
CVE-2020-11535CRITICAL9.8An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit X...
CVE-2020-11534CRITICAL9.8An issue was discovered in ONLYOFFICE Document Server 5.5.0. An attacker can craft a malicious .docx file, and exploit t...
CVE-2020-2961CRITICAL9.8Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Discovery Framewo...
CVE-2020-2953CRITICAL9.8Vulnerability in the Oracle Retail Customer Management and Segmentation Foundation product of Oracle Retail Applications...
CVE-2020-2950CRITICAL9.8Vulnerability in the Oracle Business Intelligence Enterprise Edition product of Oracle Fusion Middleware (component: Ana...
CVE-2020-2931CRITICAL9.8Vulnerability in the Oracle Knowledge product of Oracle Knowledge (component: Web Applications - InfoCenter). Supported ...
CVE-2020-2915CRITICAL9.8Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Caching, CacheStore, Invocation). ...
CVE-2020-2884CRITICAL9.8Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th...
CVE-2020-2883CRITICAL9.8Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions th...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now