2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-37042HIGH8.4Frigate Professional 3.36.0.9 contains a local buffer overflow vulnerability in the 'Find Computer' feature that allows ...
CVE-2020-37041HIGH7.5OpenCTI 3.3.1 is vulnerable to a directory traversal attack via the static/css endpoint. An unauthenticated attacker can...
CVE-2020-37040HIGH8.4Code Blocks 17.12 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary code by craf...
CVE-2020-37039HIGH7.5Frigate 2.02 contains a denial of service vulnerability that allows attackers to crash the application by sending oversi...
CVE-2020-37038HIGH7.5Code Blocks 20.03 contains a denial of service vulnerability that allows attackers to crash the application by manipulat...
CVE-2020-37036HIGH8.4RM Downloader 2.50.60 contains a local buffer overflow vulnerability in the 'Load' parameter that allows attackers to ex...
CVE-2020-37035HIGH8.8e-Learning PHP Script 0.1.0 contains a SQL injection vulnerability in the search functionality that allows attackers to ...
CVE-2020-37034HIGH8.7HelloWeb 2.0 contains an arbitrary file download vulnerability that allows remote attackers to download system files by ...
CVE-2020-37033HIGH8.8Infor Storefront B2B 1.0 contains a SQL injection vulnerability that allows attackers to manipulate database queries thr...
CVE-2020-37032HIGH8.8Wing FTP Server 6.3.8 contains a remote code execution vulnerability in its Lua-based web console that allows authentica...
CVE-2020-37031HIGH8.6Simple Startup Manager 1.17 contains a local buffer overflow vulnerability that allows attackers to execute arbitrary co...
CVE-2020-37029HIGH8.4FTPDummy 4.80 contains a local buffer overflow vulnerability in its preference file handling that allows attackers to ex...
CVE-2020-37028HIGH8.4Socusoft Photo to Video Converter Professional 8.07 contains a local buffer overflow vulnerability in the 'Output Folder...
CVE-2020-37027CRITICAL9.8Sickbeard alpha contains a remote command injection vulnerability that allows unauthenticated attackers to execute arbit...
CVE-2020-37026MEDIUM5.3Sickbeard alpha contains a cross-site request forgery vulnerability that allows attackers to disable authentication by s...
CVE-2020-37025HIGH8.4Port Forwarding Wizard 4.8.0 contains a buffer overflow vulnerability that allows local attackers to execute arbitrary c...
CVE-2020-37024HIGH8.4Nidesoft DVD Ripper 5.2.18 contains a local buffer overflow vulnerability in the License Code registration parameter tha...
CVE-2020-37023HIGH8.8Koken CMS 0.22.24 contains a file upload vulnerability that allows authenticated attackers to bypass file extension rest...
CVE-2020-37060HIGH8.5Atomic Alarm Clock 6.3 contains a local privilege escalation vulnerability in its service configuration that allows atta...
CVE-2020-37059HIGH8.5Popcorn Time 6.2.1.14 contains an unquoted service path vulnerability that allows local non-privileged users to potentia...
CVE-2020-37058HIGH8.5Andrea ST Filters Service 1.0.64.7 contains an unquoted service path vulnerability in its Windows service configuration....
CVE-2020-37030HIGH8.5Outline Service 1.3.3 contains an unquoted service path vulnerability that allows local users to potentially execute arb...
CVE-2020-37022MEDIUM6.4OpenZ ERP 3.6.60 contains a persistent cross-site scripting vulnerability in the Employee module's name and description ...
CVE-2020-37019MEDIUM6.4Orchard Core RC1 contains a persistent cross-site scripting vulnerability that allows remote attackers to inject malicio...
CVE-2020-37014MEDIUM6.4Tryton 5.4 contains a persistent cross-site scripting vulnerability in the user profile name input that allows remote at...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now