2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36867 | HIGH | 8.8 | 2.6% | Oct 30, 2025 | Nagios XI versions prior to 5.7.3 contain a command injection vulnerability in the report PDF download/export functional... |
| CVE-2020-36863 | HIGH | 8.8 | 1.3% | Oct 30, 2025 | Nagios XI versions prior to 5.7.2 allow PHP files to be uploaded to the Audio Import directory and executed from that lo... |
| CVE-2020-36859 | HIGH | 8.8 | 0.8% | Oct 30, 2025 | The Core Config Manager (CCM) in Nagios XI versions prior to CCM 3.0.7 / Nagios XI 5.7.4 contains multiple SQL injection... |
| CVE-2020-36857 | HIGH | 7.2 | 2.2% | Oct 30, 2025 | Nagios XI versions prior to 5.6.14 contain a post-authentication SQL injection vulnerability in the SNMP Trap Interface ... |
| CVE-2020-36856 | HIGH | 8.8 | 2.2% | Oct 30, 2025 | Nagios XI versions prior to 5.6.14 contain an authenticated remote command execution vulnerability in the CCM command_te... |
| CVE-2020-36853 | HIGH | 7.2 | 0.3% | Oct 18, 2025 | The 10WebMapBuilder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Plugin Settings Change in vers... |
| CVE-2020-9322 | HIGH | 8.8 | 0.2% | Aug 8, 2025 | The /users endpoint in Statamic Core before 2.11.8 allows XSS to add an administrator user. This can be exploited via CS... |
| CVE-2020-36850 | HIGH | 8.7 | 0.4% | Jul 25, 2025 | An information disclosure vulnerability exits in Sitecore JSS React Sample Application 11.0.0 - 14.0.1 that may cause pa... |
| CVE-2020-36848 | HIGH | 7.5 | 1.1% | Jul 12, 2025 | The Total Upkeep – WordPress Backup Plugin plus Restore & Migrate by BoldGrid plugin for WordPress is vulnerable to Sens... |
| CVE-2020-36791 | HIGH | 7.1 | 0.2% | May 7, 2025 | In the Linux kernel, the following vulnerability has been resolved: net_sched: keep alloc_hash updated after hash alloc... |
| CVE-2020-9295 | HIGH | 7.5 | 0.3% | Mar 17, 2025 | FortiOS 6.2 running AV engine version 6.00142 and below, FortiOS 6.4 running AV engine version 6.00144 and below and For... |
| CVE-2020-23438 | HIGH | 7.8 | 0.2% | Mar 4, 2025 | Wondershare filmora 9.2.11 is affected by Trojan Dll hijacking leading to privilege escalation. |
| CVE-2020-10095 | HIGH | 8.1 | 0.2% | Feb 19, 2025 | Various Lexmark devices have CSRF that allows an attacker to modify the configuration of the device. |
| CVE-2020-8094 | HIGH | 7.8 | 0.2% | Jan 15, 2025 | An untrusted search path vulnerability in testinitsigs.exe as used in Bitdefender Antivirus Free 2020 allows a low-privi... |
| CVE-2020-9236 | HIGH | 8.8 | 0.4% | Dec 27, 2024 | There is an improper interface design vulnerability in Huawei product. A module interface of the impated product does no... |
| CVE-2020-9222 | HIGH | 7.8 | 0.1% | Dec 27, 2024 | There is a privilege escalation vulnerability in Huawei FusionCompute product. Due to insufficient verification on speci... |
| CVE-2020-9211 | HIGH | 7.2 | 0.2% | Dec 27, 2024 | There is an out-of-bound read and write vulnerability in Huawei smartphone. A module dose not verify the input sufficien... |
| CVE-2020-9080 | HIGH | 7.8 | 0.1% | Dec 27, 2024 | There is an improper privilege management vulnerability in Huawei smart phone product. A local, authenticated attacker c... |
| CVE-2020-13712 | HIGH | 7.8 | 0.6% | Dec 20, 2024 | A command injection is possible through the user interface, allowing arbitrary command execution as the root user. oMG2... |
| CVE-2020-15934 | HIGH | 7.8 | 0.2% | Dec 19, 2024 | An execution with unnecessary privileges vulnerability in the VCM engine of FortiClient for Linux versions 6.2.7 and bel... |
| CVE-2020-12820 | HIGH | 8.8 | 0.9% | Dec 19, 2024 | Under non-default configuration, a stack-based buffer overflow in FortiOS version 6.0.10 and below, version 5.6.12 and b... |
| CVE-2020-12819 | HIGH | 7.5 | 0.8% | Dec 19, 2024 | A heap-based buffer overflow vulnerability in the processing of Link Control Protocol messages in FortiGate versions 5.6... |
| CVE-2020-12487 | HIGH | 7 | 0.3% | Dec 17, 2024 | Due to the flaws in the verification of input parameters, the attacker can input carefully constructed commands to make ... |
| CVE-2020-28398 | HIGH | 8.8 | 0.2% | Dec 10, 2024 | A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.16.0), RUGGEDCOM ROX MX5000RE (All versio... |
| CVE-2020-3548 | HIGH | 7.5 | 0.8% | Nov 18, 2024 | A vulnerability in the Transport Layer Security (TLS) protocol implementation of Cisco AsyncOS software for Cisco&n... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now