2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-28964MEDIUM6.7Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Search function. This vulne...
CVE-2020-28963HIGH7.8Passcovery Co. Ltd ZIP Password Recovery v3.70.69.0 was discovered to contain a buffer overflow via the decompress funct...
CVE-2020-28961MEDIUM5.4Perfex CRM v2.4.4 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the component ./clients...
CVE-2020-28960CRITICAL9.8Chichen Tech CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the file product_list.php via ...
CVE-2020-28957MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Customer Add module of Foxlor v0.10.16 allows attackers to ex...
CVE-2020-28956MEDIUM5.4Multiple cross-site scripting (XSS) vulnerabilities in the Sales module of SugarCRM v6.5.18 allows attackers to execute ...
CVE-2020-28955MEDIUM5.4SugarCRM v6.5.18 was discovered to contain a cross-site scripting (XSS) vulnerability in the Create Employee module. Thi...
CVE-2020-23061HIGH7.5Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain an issue in the path parameter of the `list` and...
CVE-2020-23060HIGH7.1Internet Download Manager 6.37.11.1 was discovered to contain a stack buffer overflow in the Export/Import function. Thi...
CVE-2020-23058MEDIUM4.6An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data.
CVE-2020-23055MEDIUM5.4ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scri...
CVE-2020-23054MEDIUM6.1A cross-site scripting (XSS) vulnerability in NSK User Agent String Switcher Service v0.3.5 allows attackers to execute ...
CVE-2020-23052MEDIUM5.4Catalyst IT Ltd Mahara CMS v19.10.2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the...
CVE-2020-23051MEDIUM6.1Phpgurukul User Registration & User Management System v2.0 was discovered to contain multiple stored cross-site scriptin...
CVE-2020-23050HIGH8TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a HTML injection vulnerability in the userFirs...
CVE-2020-23049MEDIUM5.4Fork CMS Content Management System v5.8.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the `D...
CVE-2020-23048MEDIUM6.1SeedDMS Content Management System v6.0.7 contains a persistent cross-site scripting (XSS) vulnerability in the component...
CVE-2020-23047MEDIUM6.1Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a cross-site scripting (XSS) vulnerab...
CVE-2020-23046MEDIUM6.1DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component tpl.php ...
CVE-2020-23045HIGH7.2Macrob7 Macs Framework Content Management System - 1.14f was discovered to contain a SQL injection vulnerability via the...
CVE-2020-23044MEDIUM5.4DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_pic...
CVE-2020-23043HIGH8.8Tran Tu Air Sender v1.0.2 was discovered to contain an arbitrary file upload vulnerability in the upload module. This vu...
CVE-2020-23042MEDIUM6.1Dropouts Technologies LLP Super Backup v2.0.5 was discovered to contain a cross-site scripting (XSS) vulnerability in th...
CVE-2020-23041MEDIUM6.1Dropouts Technologies LLP Air Share v1.2 was discovered to contain a cross-site scripting (XSS) vulnerability in the pat...
CVE-2020-23040HIGH7.5Sky File v2.1.0 contains a directory traversal vulnerability in the FTP server which allows attackers to access sensitiv...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now