2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9695HIGH7.8Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an ou...
CVE-2020-37255HIGH8.7WordPress Time Capsule Plugin 1.21.16 contains an authentication bypass vulnerability that allows unauthenticated attack...
CVE-2020-37254HIGH8.5Wondershare PDFelement 5.2.9 contains a privilege escalation vulnerability due to an unquoted service path in the WsAppS...
CVE-2020-37253HIGH8.5Winstep 18.06.0096 contains an unquoted service path vulnerability in the Winstep Xtreme Service that allows local attac...
CVE-2020-37252HIGH8.5Realtek Audio Service 1.0.0.55 contains an unquoted service path vulnerability in RtkAudioService64.exe that allows loca...
CVE-2020-37251HIGH8.5RealTimes Desktop Service 18.1.4 contains an unquoted service path vulnerability in the rpdsvc.exe binary that allows lo...
CVE-2020-37250HIGH8.5TFTP Broadband 4.3.0.1465 contains an unquoted service path vulnerability in the tftpt.exe service binary that allows lo...
CVE-2020-37247HIGH8.5Kite 4.2.0.1 U1 contains an unquoted service path vulnerability in the KiteService Windows service that allows local att...
CVE-2020-37245HIGH8.7Supsystic Digital Publications 1.6.9 contains a path traversal vulnerability in the Folder input field that allows attac...
CVE-2020-37244HIGH8.8Supsystic Membership 1.4.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbi...
CVE-2020-37243HIGH8.8Supsystic Pricing Table 1.8.7 contains an SQL injection vulnerability in the 'sidx' GET parameter that allows unauthenti...
CVE-2020-37242HIGH8.8Supsystic Ultimate Maps 1.1.12 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2020-37232HIGH8.5Advanced System Care Service 13.0.0.157 contains an unquoted service path vulnerability in the AdvancedSystemCareService...
CVE-2020-37231HIGH8.5Privacy Drive 3.17.0 contains an unquoted service path vulnerability in the pdsvc.exe service binary that allows local a...
CVE-2020-37230HIGH8.5Syncplify.me Server! 5.0.37 contains an unquoted service path vulnerability in the SMWebRestServicev5 service that allow...
CVE-2020-37229HIGH8.5OKI sPSV Port Manager 1.0.41 contains an unquoted service path vulnerability in the sPSVOpLclSrv service that allows loc...
CVE-2020-37227HIGH8.8HS Brand Logo Slider 2.1 contains an unrestricted file upload vulnerability that allows authenticated users to bypass cl...
CVE-2020-37226HIGH7.1Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu...
CVE-2020-37224HIGH7.1Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu...
CVE-2020-37223HIGH8.5IObit Uninstaller 9.5.0.15 contains an unquoted service path vulnerability in the IObitUnSvr service that allows local a...
CVE-2020-37222HIGH7.2Kuicms Php EE 2.0 contains a persistent cross-site scripting vulnerability that allows unauthenticated attackers to inje...
CVE-2020-37221HIGH8.6Atomic Alarm Clock 6.3 contains a stack overflow vulnerability that allows local attackers to execute arbitrary code by ...
CVE-2020-37220HIGH8.7Huawei HG630 V2 router contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain a...
CVE-2020-37219HIGH8.7Joomla com_fabrik 3.9.11 contains a directory traversal vulnerability that allows unauthenticated attackers to list arbi...
CVE-2020-37218HIGH8.8Joomla com_hdwplayer 4.2 contains an SQL injection vulnerability in the search.php file that allows unauthenticated atta...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now