2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-28964 | MEDIUM | 6.7 | 0.4% | Oct 22, 2021 | Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulne... |
| CVE-2020-28963 | HIGH | 7.8 | 0.4% | Oct 22, 2021 | Passcovery Co. Ltd ZIP Password Recovery v3.70.69.0 was discovered to contain a buffer overflow via the decompress funct... |
| CVE-2020-28961 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Perfex CRM v2.4.4 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the component ./clients... |
| CVE-2020-28960 | CRITICAL | 9.8 | 1.5% | Oct 22, 2021 | Chichen Tech CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the file product_list.php via ... |
| CVE-2020-28957 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Multiple cross-site scripting (XSS) vulnerabilities in the Customer Add module of Foxlor v0.10.16 allows attackers to ex... |
| CVE-2020-28956 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Multiple cross-site scripting (XSS) vulnerabilities in the Sales module of SugarCRM v6.5.18 allows attackers to execute ... |
| CVE-2020-28955 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | SugarCRM v6.5.18 was discovered to contain a cross-site scripting (XSS) vulnerability in the Create Employee module. Thi... |
| CVE-2020-23061 | HIGH | 7.5 | 1.6% | Oct 22, 2021 | Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the `list` and... |
| CVE-2020-23060 | HIGH | 7.1 | 0.4% | Oct 22, 2021 | Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. Thi... |
| CVE-2020-23058 | MEDIUM | 4.6 | 0.4% | Oct 22, 2021 | An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data. |
| CVE-2020-23055 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scri... |
| CVE-2020-23054 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | A cross-site scripting (XSS) vulnerability in NSK User Agent String Switcher Service v0.3.5 allows attackers to execute ... |
| CVE-2020-23052 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Catalyst IT Ltd Mahara CMS v19.10.2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the... |
| CVE-2020-23051 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Phpgurukul User Registration & User Management System v2.0 was discovered to contain multiple stored cross-site scriptin... |
| CVE-2020-23050 | HIGH | 8 | 1.1% | Oct 22, 2021 | TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a HTML injection vulnerability in the userFirs... |
| CVE-2020-23049 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Fork CMS Content Management System v5.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the `D... |
| CVE-2020-23048 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | SeedDMS Content Management System v6.0.7 contains a persistent cross-site scripting (XSS) vulnerability in the component... |
| CVE-2020-23047 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a cross-site scripting (XSS) vulnerab... |
| CVE-2020-23046 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tpl.php ... |
| CVE-2020-23045 | HIGH | 7.2 | 1.1% | Oct 22, 2021 | Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a SQL injection vulnerability via the... |
| CVE-2020-23044 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_pic... |
| CVE-2020-23043 | HIGH | 8.8 | 1.7% | Oct 22, 2021 | Tran Tu Air Sender v1.0.2 was discovered to contain an arbitrary file upload vulnerability in the upload module. This vu... |
| CVE-2020-23042 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain a cross-site scripting (XSS) vulnerability in th... |
| CVE-2020-23041 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the pat... |
| CVE-2020-23040 | HIGH | 7.5 | 1.7% | Oct 22, 2021 | Sky File v2.1.0 contains a directory traversal vulnerability in the FTP server which allows attackers to access sensitiv... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now