8.1
    High

    CVE-2020-17533

    Last Modified: 21 Nov 2024

    Apache Accumulo versions 1.5.0 through 1.10.0 and version 2.0.0 do not properly check the return value of some policy enforcement functions before permitting an authenticated user to perform certain administrative operations. Specifically, the return values of the 'canFlush' and 'canPerformSystemActions' security functions are not checked in some instances, therefore allowing an authenticated user with insufficient permissions to perform the following actions: flushing a table, shutting down Accumulo or an individual tablet server, and setting or removing system-wide Accumulo configuration properties.

    Published:29 Dec 2020
    9.8
    Critical

    CVE-2020-17531

    Last Modified: 21 Nov 2024

    A Java Serialization vulnerability was found in Apache Tapestry 4. Apache Tapestry 4 will attempt to deserialize the "sp" parameter even before invoking the page's validate method, leading to deserialization without authentication. Apache Tapestry 4 reached end of life in 2008 and no update to address this issue will be released. Apache Tapestry 5 versions are not vulnerable to this issue. Users of Apache Tapestry 4 should upgrade to the latest Apache Tapestry 5 version.

    Published:8 Dec 2020
    9.8
    Critical

    CVE-2020-17530

    Last Modified: 27 Oct 2025

    Forced OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution. Affected software : Apache Struts 2.0.0 - Struts 2.5.25.

    Published:8 Dec 2020
    7.5
    High

    CVE-2020-17527

    Last Modified: 13 Feb 2025

    While investigating bug 64830 it was discovered that Apache Tomcat 10.0.0-M1 to 10.0.0-M9, 9.0.0-M1 to 9.0.39 and 8.5.0 to 8.5.59 could re-use an HTTP request header value from the previous stream received on an HTTP/2 connection for the request associated with the subsequent stream. While this would most likely lead to an error and the closure of the HTTP/2 connection, it is possible that information could leak between requests.

    Published:3 Dec 2020
    9.8
    Critical

    CVE-2020-17523

    Last Modified: 21 Nov 2024

    Apache Shiro before 1.7.1, when using Apache Shiro with Spring, a specially crafted HTTP request may cause an authentication bypass.

    Published:1 Jan 2021
    7.5
    High

    CVE-2020-17519

    Last Modified: 8 Jan 2021

    A change introduced in Apache Flink 1.11.0 (and released in 1.11.1 and 1.11.2 as well) allows attackers to read any file on the local filesystem of the JobManager through the REST interface of the JobManager process. Access is restricted to files accessible by the JobManager process. All users should upgrade to Flink 1.11.3 or 1.12.0 if their Flink instance(s) are exposed. The issue was fixed in commit b561010b0ee741543c3953306037f00d7a9f0801 from apache/flink:master.

    Source:SunCSR Team
    Published:5 Jan 2021
    7.5
    High

    CVE-2020-17518

    Last Modified: 13 Feb 2025

    Apache Flink 1.5.1 introduced a REST handler that allows you to write an uploaded file to an arbitrary location on the local file system, through a maliciously modified HTTP HEADER. The files can be written to any location accessible by Flink 1.5.1. All users should upgrade to Flink 1.11.3 or 1.12.0 if their Flink instance(s) are exposed. The issue was fixed in commit a5264a6f41524afe8ceadf1d8ddc8c80f323ebc4 from apache/flink:master.

    Published:5 Jan 2021
    9.8
    Critical

    CVE-2020-17506

    Last Modified: 13 Aug 2020

    Artica Web Proxy 4.30.00000000 allows remote attacker to bypass privilege detection and gain web backend administrator privileges through SQL injection of the apikey parameter in fw.login.php.

    Source:Dan Duffy
    Published:12 Aug 2020
    9.8
    Critical

    CVE-2020-17496

    Last Modified: 7 Nov 2025

    vBulletin 5.5.4 through 5.6.2 allows remote command execution via crafted subWidgets data in an ajax/render/widget_tabbedcontainer_tab_panel request. NOTE: this issue exists because of an incomplete fix for CVE-2019-16759.

    Published:12 Aug 2020
    9.8
    Critical

    CVE-2020-17456

    Last Modified: 11 Mar 2022

    SEOWON INTECH SLC-130 And SLR-120S devices allow Remote Code Execution via the ipAddr parameter to the system_log.cgi page.

    Source:Aryan Chehreghani
    Published:19 Aug 2020
    6.1
    Medium

    CVE-2020-17453

    Last Modified: 21 Nov 2024

    WSO2 Management Console through 5.10 allows XSS via the carbon/admin/login.jsp msgId parameter.

    Published:5 Apr 2021
    7.8
    High

    CVE-2020-17382

    Last Modified: 28 Sept 2020

    The MSI AmbientLink MsIo64 driver 1.0.0.8 has a Buffer Overflow (0x80102040, 0x80102044, 0x80102050,and 0x80102054).

    Source:Matteo Malvica
    Published:2 Oct 2020
    8.4
    High

    CVE-2020-17144

    Last Modified: 29 Oct 2025

    Microsoft Exchange Remote Code Execution Vulnerability

    Published:9 Dec 2020
    7.8
    High

    CVE-2020-17136

    Last Modified: 28 Aug 2025

    Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

    Published:9 Dec 2020
    7
    High

    CVE-2020-17103

    Last Modified: 9 Jun 2026

    Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability

    Published:9 Dec 2020
    7.8
    High

    CVE-2020-17087

    Last Modified: 29 Oct 2025

    Windows Kernel Local Elevation of Privilege Vulnerability

    Published:11 Nov 2020
    7.8
    High

    CVE-2020-17086

    Last Modified: 21 Nov 2024

    Raw Image Extension Remote Code Execution Vulnerability

    Published:11 Nov 2020
    7
    High

    CVE-2020-17057

    Last Modified: 21 Nov 2024

    Windows Win32k Elevation of Privilege Vulnerability

    Published:11 Nov 2020
    7.8
    High

    CVE-2020-17035

    Last Modified: 21 Nov 2024

    Windows Kernel Elevation of Privilege Vulnerability

    Published:11 Nov 2020
    Unknown

    CVE-2020-17008

    https://github.com/jas502n/CVE-2020-17008

    7.5
    High

    CVE-2020-16947

    Last Modified: 23 Feb 2026

    <p>A remote code execution vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the targeted user. If the targeted user is logged on with administrative user rights, an attacker could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.</p> <p>Exploitation of the vulnerability requires that a user open a specially crafted file with an affected version of Microsoft Outlook software. In an email attack scenario, an attacker could exploit the vulnerability by sending the specially crafted file to the user and convincing the user to open the file. In a web-based attack scenario, an attacker could host a website (or leverage a compromised website that accepts or hosts user-provided content) that contains a specially crafted file designed to exploit the vulnerability. An attacker would have no way to force users to visit the website. Instead, an attacker would have to convince users to click a link, typically by way of an enticement in an email or instant message, and then convince them to open the specially crafted file.</p> <p>Note that where severity is indicated as Critical in the Affected Products table, the Preview Pane is an attack vector.</p> <p>The security update addresses the vulnerability by correcting how Outlook handles objects in memory.</p>

    Published:16 Oct 2020
    7.8
    High

    CVE-2020-16939

    Last Modified: 23 Feb 2026

    <p>An elevation of privilege vulnerability exists when Group Policy improperly checks access. An attacker who successfully exploited this vulnerability could run processes in an elevated context.</p> <p>To exploit the vulnerability, an attacker would first have to log on to the system, and then run a specially crafted application to take control over the affected system.</p> <p>The security update addresses the vulnerability by correcting how Group Policy checks access.</p>

    Published:16 Oct 2020
    5.5
    Medium

    CVE-2020-16938

    Last Modified: 23 Feb 2026

    <p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attacker who successfully exploited this vulnerability could obtain information to further compromise the user’s system.</p> <p>To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The vulnerability would not allow an attacker to execute code or to elevate user rights directly, but it could be used to obtain information that could be used to try to further compromise the affected system.</p> <p>The update addresses the vulnerability by correcting how the Windows kernel handles objects in memory.</p>

    Published:16 Oct 2020
    7.5
    High

    CVE-2020-16899

    Last Modified: 23 Feb 2026

    <p>A denial of service vulnerability exists when the Windows TCP/IP stack improperly handles ICMPv6 Router Advertisement packets. An attacker who successfully exploited this vulnerability could cause a target system to stop responding.</p> <p>To exploit this vulnerability, an attacker would have to send specially crafted ICMPv6 Router Advertisement packets to a remote Windows computer. The vulnerability would not allow an attacker to execute code or to elevate user rights directly.</p> <p>The update addresses the vulnerability by correcting how the Windows TCP/IP stack handles ICMPv6 Router Advertisement packets.</p>

    Published:16 Oct 2020
    8.8
    High

    CVE-2020-16898

    Last Modified: 23 Feb 2026

    <p>A remote code execution vulnerability exists when the Windows TCP/IP stack improperly handles ICMPv6 Router Advertisement packets. An attacker who successfully exploited this vulnerability could gain the ability to execute code on the target server or client.</p> <p>To exploit this vulnerability, an attacker would have to send specially crafted ICMPv6 Router Advertisement packets to a remote Windows computer.</p> <p>The update addresses the vulnerability by correcting how the Windows TCP/IP stack handles ICMPv6 Router Advertisement packets.</p>

    Published:16 Oct 2020
    9.8
    Critical

    CVE-2020-16846

    Last Modified: 7 Nov 2025

    An issue was discovered in SaltStack Salt through 3002. Sending crafted web requests to the Salt API, with the SSH client enabled, can result in shell injection.

    Published:3 Nov 2020
    8.1
    High

    CVE-2020-16602

    Last Modified: 26 Nov 2020

    Razer Chroma SDK Rest Server through 3.12.17 allows remote attackers to execute arbitrary programs because there is a race condition in which a file created under "%PROGRAMDATA%\Razer Chroma\SDK\Apps" can be replaced before it is executed by the server. The attacker must have access to port 54236 for a registration step.

    Source:Loke Hui Yi
    Published:2 Sept 2020
    6.1
    Medium

    CVE-2020-16270

    Last Modified: 21 Nov 2024

    OLIMPOKS under 3.3.39 allows Auth/Admin ErrorMessage XSS. Remote Attacker can use discovered vulnerability to inject malicious JavaScript payload to victim’s browsers in context of vulnerable applications. Executed code can be used to steal administrator’s cookies, influence HTML content of targeted application and perform phishing-related attacks. Vulnerable application used in more than 3000 organizations in different sectors from retail to industries.

    Published:16 Oct 2020
    6.5
    Medium

    CVE-2020-16171

    Last Modified: 27 Nov 2020

    An issue was discovered in Acronis Cyber Backup before 12.5 Build 16342. Some API endpoints on port 9877 under /api/ams/ accept an additional custom Shard header. The value of this header is afterwards used in a separate web request issued by the application itself. This can be abused to conduct SSRF attacks against otherwise unreachable Acronis services that are bound to localhost such as the NotificationService on 127.0.0.1:30572.

    Source:Julien Ahrens
    Published:21 Sept 2020
    9.8
    Critical

    CVE-2020-16152

    Last Modified: 21 Nov 2024

    The NetConfig UI administrative interface in Extreme Networks ExtremeWireless Aerohive HiveOS and IQ Engine through 10.0r8a allows attackers to execute PHP code as the root user via remote HTTP requests that insert this code into a log file and then traverse to that file.

    Published:14 Nov 2021
    3.3
    Low

    CVE-2020-16126

    Last Modified: 21 Nov 2024

    An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, improperly dropped the ruid, allowing untrusted users to send signals to AccountService, thus stopping it from handling D-Bus messages in a timely fashion.

    Published:11 Nov 2020
    7.2
    High

    CVE-2020-16125

    Last Modified: 21 Nov 2024

    gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.

    Published:10 Nov 2020
    6.5
    Medium

    CVE-2020-16040

    Last Modified: 7 Apr 2021

    Insufficient data validation in V8 in Google Chrome prior to 87.0.4280.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Source:r4j0x00
    Published:8 Jan 2021
    4.3
    Medium

    CVE-2020-16012

    Last Modified: 21 Nov 2024

    Side-channel information leakage in graphics in Google Chrome prior to 87.0.4280.66 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

    Published:17 Nov 2020
    9.6
    Critical

    CVE-2020-15999

    Last Modified: 24 Oct 2025

    Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

    Published:19 Oct 2020
    7.5
    High

    CVE-2020-15956

    Last Modified: 5 Aug 2020

    ActiveMediaServer.exe in ACTi NVR3 Standard Server 3.0.12.42 allows remote unauthenticated attackers to trigger a buffer overflow and application termination via a malformed payload.

    Source:MegaMagnus
    Published:4 Aug 2020
    7.5
    High

    CVE-2020-15931

    Last Modified: 21 Nov 2024

    Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain Administrator (that is configured within the product in its installation state) by generating a single Kerberos Pre-Authentication Failed (ID 4771) event on a Domain Controller.

    Published:20 Oct 2020
    6.1
    Medium

    CVE-2020-15930

    Last Modified: 28 Sept 2020

    An XSS issue in Joplin desktop 1.0.190 to 1.0.245 allows arbitrary code execution via a malicious HTML embed tag.

    Source:Ademar Nowasky Junior
    Published:24 Sept 2020
    9.8
    Critical

    CVE-2020-15922

    Last Modified: 28 Sept 2020

    There is an OS Command Injection in Mida eFramework 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. Authentication is required.

    Source:elbae
    Published:24 Jul 2020
    9.8
    Critical

    CVE-2020-15921

    Last Modified: 21 Sept 2020

    Mida eFramework through 2.9.0 has a back door that permits a change of the administrative password and access to restricted functionalities, such as Code Execution.

    Source:elbae
    Published:24 Jul 2020
    9.8
    Critical

    CVE-2020-15920

    Last Modified: 27 Aug 2020

    There is an OS Command Injection in Mida eFramework through 2.9.0 that allows an attacker to achieve Remote Code Execution (RCE) with administrative (root) privileges. No authentication is required.

    Source:elbae
    Published:24 Jul 2020
    9.8
    Critical

    CVE-2020-15916

    Last Modified: 21 Nov 2024

    goform/AdvSetLanip endpoint on Tenda AC15 AC1900 15.03.05.19 devices allows remote attackers to execute arbitrary system commands via shell metacharacters in the lanIp POST parameter.

    Published:23 Jul 2020
    9.8
    Critical

    CVE-2020-15906

    Last Modified: 21 Nov 2024

    tiki-login.php in Tiki before 21.2 sets the admin password to a blank value after 50 invalid login attempts.

    Published:22 Oct 2020
    6.5
    Medium

    CVE-2020-15873

    Last Modified: 21 Nov 2024

    In LibreNMS before 1.65.1, an authenticated attacker can achieve SQL Injection via the customoid.inc.php device_id POST parameter to ajax_form.php.

    Published:21 Jul 2020
    Unknown

    CVE-2020-15848

    https://github.com/faklad/CVE-2020-15848

    Unknown

    CVE-2020-15808

    https://github.com/manucuf/CVE202015808

    5.9
    Medium

    CVE-2020-15802

    Last Modified: 21 Nov 2024

    Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivation in Bluetooth Core Specification v4.2 and v5.0 may permit an unauthenticated user to establish a bonding with one transport, either LE or BR/EDR, and replace a bonding already established on the opposing transport, BR/EDR or LE, potentially overwriting an authenticated key with an unauthenticated key, or a key with greater entropy with one with less.

    Published:10 Sept 2020
    6.7
    Medium

    CVE-2020-15780

    Last Modified: 21 Nov 2024

    An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30.

    Published:15 Jun 2020
    7.4
    High

    CVE-2020-15778

    Last Modified: 28 Jul 2025

    scp in OpenSSH through 8.3p1 allows command injection in the scp.c toremote function, as demonstrated by backtick characters in the destination argument. NOTE: the vendor reportedly has stated that they intentionally omit validation of "anomalous argument transfers" because that could "stand a great chance of breaking existing workflows."

    Published:18 Jul 2020
    6.1
    Medium

    CVE-2020-15718

    Last Modified: 3 Dec 2025

    RosarioSIS 6.7.2 is vulnerable to XSS, caused by improper validation of user-supplied input by the PrintSchedules.php script. A remote attacker could exploit this vulnerability using the include_inactive parameter in a crafted URL.

    Source:CodeSecLab
    Published:15 Jul 2020