2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36995HIGH7.5Mocha Telnet Lite for iOS 4.2 contains a denial of service vulnerability that allows attackers to crash the application ...
CVE-2020-36994MEDIUM6.2QlikView 12.50.20000.0 contains a denial of service vulnerability in the FTP server address input field that allows loca...
CVE-2020-36973HIGH8.7PDW File Browser 1.3 contains a remote code execution vulnerability that allows authenticated users to upload and rename...
CVE-2020-36972HIGH7.5SmartBlog 2.0.1 contains a blind SQL injection vulnerability in the 'id_post' parameter of the details controller that a...
CVE-2020-36971HIGH8.4Nidesoft 3GP Video Converter 2.6.18 contains a local stack buffer overflow vulnerability in the license registration par...
CVE-2020-36970HIGH8.4PMB 5.6 contains a local file disclosure vulnerability in getgif.php that allows attackers to read arbitrary system file...
CVE-2020-36969HIGH8.8M/Monit 3.7.4 contains a privilege escalation vulnerability that allows authenticated users to modify user permissions b...
CVE-2020-36968HIGH7.1M/Monit 3.7.4 contains an authentication vulnerability that allows authenticated attackers to retrieve user password has...
CVE-2020-36967CRITICAL9.8Zortam Mp3 Media Studio 27.60 contains a buffer overflow vulnerability in the library creation file selection process th...
CVE-2020-36965HIGH8.4docPrint Pro 8.0 contains a local buffer overflow vulnerability in the 'Add URL' input field that allows attackers to ex...
CVE-2020-36964CRITICAL9.8YATinyWinFTP contains a denial of service vulnerability that allows attackers to crash the FTP service by sending a 272-...
CVE-2020-36963HIGH8.7Intelbras Router RF 301K firmware version 1.1.2 contains an authentication bypass vulnerability that allows unauthentica...
CVE-2020-36962CRITICAL9.8Tendenci 12.3.1 contains a CSV formula injection vulnerability in the contact form message field that allows attackers t...
CVE-2020-36961CRITICAL9.810-Strike Network Inventory Explorer 8.65 contains a buffer overflow vulnerability in exception handling that allows rem...
CVE-2020-36945HIGH8.8WebDamn User Registration Login System contains a SQL injection vulnerability that allows unauthenticated attackers to b...
CVE-2020-36944LOW3.3ILIAS Learning Management System 4.3 contains a server-side request forgery vulnerability that allows attackers to read ...
CVE-2020-36943HIGH7.5aSc TimeTables 2021.6.2 contains a denial of service vulnerability that allows attackers to crash the application by ove...
CVE-2020-36993MEDIUM5.4LimeSurvey 4.3.10 contains a stored cross-site scripting vulnerability in the Survey Menu functionality of the administr...
CVE-2020-36992HIGH8.5Nord VPN 6.31.13.0 contains an unquoted service path vulnerability in its nordvpn-service that allows local attackers to...
CVE-2020-36991HIGH8.5ShareMouse 5.0.43 contains an unquoted service path vulnerability that allows local users to potentially execute arbitra...
CVE-2020-36990HIGH8.5Input Director 1.4.3 contains an unquoted service path vulnerability in its Windows service configuration that allows lo...
CVE-2020-36989HIGH8.5ForensiT AppX Management Service 2.2.0.4 contains an unquoted service path vulnerability that allows local users to pote...
CVE-2020-36988MEDIUM5.4PDW File Browser version 1.3 contains stored and reflected cross-site scripting vulnerabilities that allow authenticated...
CVE-2020-36987HIGH8.5Program Access Controller 1.2.0.0 contains an unquoted service path vulnerability in PACService.exe that allows local at...
CVE-2020-36986HIGH8.5Prey 1.9.6 contains an unquoted service path vulnerability that allows local users to potentially execute code with elev...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now