VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

17,661 guide candidatesPage 1416 of 1472
Known exploitedCriticalResearch in progress
CVE-2020-14644

Oracle WebLogic Server

Affected
12.2.1.3.0, 12.2.1.4.0, 14.1.1.0.0
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2020-1350

Microsoft Windows

Affected
2019, 2019 (Core installation), 2016, 2016 (Core installation), 2008 for 32-bit Systems Service Pack 2, 2008 for 32-bit Systems Service Pack 2 (Core installation), 2008 for x64-based Systems Service Pack 2, 2008 for x64-based Systems Service Pack 2 (Core installation), 2008 R2 for x64-based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1 (Core installation), 2012, 2012 (Core installation), 2012 R2, 2012 R2 (Core installation), unspecified, r2
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2020-1147

Microsoft .NET Framework, SharePoint, Visual Studio

Affected
2016, 2013 Service Pack 1, 2019, 2010 Service Pack 2, 16.0, unspecified, 2.1, 3.1, Windows 7 for 32-bit Systems Service Pack 1, Windows 7 for x64-based Systems Service Pack 1, Windows 8.1 for 32-bit systems, Windows 8.1 for x64-based systems, Windows RT 8.1, Windows Server 2008 R2 for x64-based Systems Service Pack 1, Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation), Windows Server 2012, Windows Server 2012 (Server Core installation), Windows Server 2012 R2, Windows Server 2012 R2 (Server Core installation), 1903
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2020-1040

Microsoft Hyper-V RemoteFX

Affected
2016, 2016 (Core installation), 2008 R2 for x64-based Systems Service Pack 1, 2008 R2 for x64-based Systems Service Pack 1 (Core installation), 2012, 2012 (Core installation), 2012 R2, 2012 R2 (Core installation), r2
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2020-6287

SAP NetWeaver

Affected
< 7.30, < 7.31, < 7.40, < 7.50, 7.30, 7.31, 7.40, 7.50
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2020-15711

misp

Affected
< 2.4.129
Fixed
2.4.129
Known exploitedCriticalResearch in progress
CVE-2020-10987

Tenda AC1900 Router AC15 Model

Affected
15.03.05.19
Fixed
No verified fixed-version field is available yet
Known exploitedMediumFixed-version data
CVE-2020-8196

Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance

Affected
Citrix ADC and Citrix Gateway 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP 11.1.1a, 11.0.3d and 10.2.7, >= 10.5 < 10.5-70.18, >= 11.1 < 11.1-64.14, >= 12.0 < 12.0-63.21, >= 12.1 < 12.1-57.18, >= 13.0 < 13.0-58.30, >= 10.2 < 10.2.7, >= 11.0 < 11.0.3d, >= 11.1 < 11.1.1a
Fixed
10.5-70.18, 11.1-64.14, 12.0-63.21, 12.1-57.18, 13.0-58.30, 10.2.7, 11.0.3d, 11.1.1a
Known exploitedMediumFixed-version data
CVE-2020-8195

Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance

Affected
Citrix ADC and Citrix Gateway 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP 11.1.1a, 11.0.3d and 10.2.7, >= 10.5 < 10.5-70.18, >= 11.1 < 11.1-64.14, >= 12.0 < 12.0-63.21, >= 12.1 < 12.1-57.18, >= 13.0 < 13.0-58.30, >= 10.2 < 10.2.7, >= 11.0 < 11.0.3d, >= 11.1 < 11.1.1a, < 1.0.0.137
Fixed
10.5-70.18, 11.1-64.14, 12.0-63.21, 12.1-57.18, 13.0-58.30, 10.2.7, 11.0.3d, 11.1.1a, 1.0.0.137
Known exploitedMediumFixed-version data
CVE-2020-8193

Citrix Application Delivery Controller (ADC), Gateway, and SD-WAN WANOP Appliance

Affected
Citrix ADC and Citrix Gateway 13.0-58.30, 12.1-57.18, 12.0-63.21, 11.1-64.14 and 10.5-70.18 and Citrix SDWAN WAN-OP 11.1.1a, 11.0.3d and 10.2.7, >= 10.5 < 10.5-70.18, >= 11.1 < 11.1-64.14, >= 12.0 < 12.0-63.21, >= 12.1 < 12.1-57.18, >= 13.0 < 13.0-58.30, >= 10.2 < 10.2.7, >= 11.0 < 11.0.3d, >= 11.1 < 11.1.1a
Fixed
10.5-70.18, 11.1-64.14, 12.0-63.21, 12.1-57.18, 13.0-58.30, 10.2.7, 11.0.3d, 11.1.1a
Known exploitedHighResearch in progress
CVE-2020-9377

D-Link DIR-610 Devices

Affected
See the vendor advisory and NVD configuration data
Fixed
No verified fixed-version field is available yet
Review reviewHighFixed-version data
CVE-2020-3973

VMware SD-WAN by VeloCloud, velocloud orchestrator, linux kernel

Affected
>= VMware SD-WAN by VeloCloud 3.2.x, 3.3.x prior to 3.3.2 p2, 3.4.x prior to 3.4.1, >= 3.1.1 < 3.3.2, 3.3.2, 3.4.0
Fixed
3.3.2