2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36985HIGH8.5IP Watcher 3.0.0.30 contains an unquoted service path vulnerability in its Windows service configuration that allows loc...
CVE-2020-36984HIGH8.5EPSON 1.124 contains an unquoted service path vulnerability in the SENADB service that allows local attackers to execute...
CVE-2020-36983HIGH8.5Quick 'n Easy FTP Service 3.2 contains an unquoted service path vulnerability that allows local attackers to execute arb...
CVE-2020-36982HIGH8.5Motorola Device Manager 2.5.4 contains an unquoted service path vulnerability in the MotoHelperService.exe service that ...
CVE-2020-36981HIGH8.5Motorola Device Manager 2.4.5 contains an unquoted service path vulnerability in the PST Service that allows local users...
CVE-2020-36980HIGH8.5SAntivirus IC 10.0.21.61 contains an unquoted service path vulnerability in its Windows service configuration that allow...
CVE-2020-36979HIGH8.5Atheros Coex Service Application 8.0.0.255 contains an unquoted service path vulnerability in its Windows service config...
CVE-2020-36978MEDIUM6.4Froxlor Server Management Panel 0.10.16 contains a persistent cross-site scripting vulnerability in customer registratio...
CVE-2020-36977HIGH8.5Wondershare Driver Install Service contains an unquoted service path vulnerability in the ElevationService executable th...
CVE-2020-36976HIGH8.5Acer Global Registration Service 1.0.0.3 contains an unquoted service path vulnerability in its service configuration th...
CVE-2020-36975HIGH8.5EPSON Status Monitor 3 version 8.0 contains an unquoted service path vulnerability that allows local attackers to potent...
CVE-2020-36974HIGH8.5Realtek Andrea RT Filters 1.0.64.7 contains an unquoted service path vulnerability that allows local users to potentiall...
CVE-2020-36951HIGH8.8Phpscript-sgh 0.1.0 contains a time-based blind SQL injection vulnerability in the admin interface that allows attackers...
CVE-2020-36950HIGH8.7Laravel Nova 3.7.0 contains a denial of service vulnerability that allows authenticated users to crash the application b...
CVE-2020-36949HIGH7.5TapinRadio 2.13.7 contains a denial of service vulnerability in the application proxy settings that allows attackers to ...
CVE-2020-36948CRITICAL9.8VestaCP 0.9.8-26 contains a session token vulnerability in the LoginAs module that allows remote attackers to manipulate...
CVE-2020-36947MEDIUM6.5LibreNMS 1.46 contains an authenticated SQL injection vulnerability in the MAC accounting graph endpoint that allows rem...
CVE-2020-36946HIGH8.7SyncBreeze 10.0.28 contains a denial of service vulnerability in the login endpoint that allows remote attackers to cras...
CVE-2020-36942HIGH8.8Victor CMS 1.0 contains a file upload vulnerability that allows authenticated users to upload malicious PHP files throug...
CVE-2020-36941CRITICAL9.8Knockpy 4.1.1 contains a CSV injection vulnerability that allows attackers to inject malicious formulas into CSV reports...
CVE-2020-36940CRITICAL9.8Easy CD & DVD Cover Creator 4.13 contains a buffer overflow vulnerability in the serial number input field that allows a...
CVE-2020-36939HIGH8.7Cassandra Web 0.5.0 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary...
CVE-2020-36938HIGH8.8WinAVR version 20100110 contains an insecure permissions vulnerability that allows authenticated users to modify system ...
CVE-2020-36960MEDIUM6.4Forma LMS 2.3 contains a stored cross-site scripting vulnerability that allows attackers to inject malicious scripts int...
CVE-2020-36959HIGH8.5IDT PC Audio 1.0.6499.0 contains an unquoted service path vulnerability that allows local users to potentially execute a...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now