2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2020-22225CRITICAL9.8Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionL...
CVE-2020-22223CRITICAL9.8Stivasoft (Phpjabbers) Fundraising Script v1.0 was discovered to contain a SQL injection vulnerability via the pjActionL...
CVE-2020-25368CRITICAL9.8A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B0...
CVE-2020-25366CRITICAL9.1An issue in the component /cgi-bin/upload_firmware.cgi of D-Link DIR-823G REVA1 1.02B05 allows attackers to cause a deni...
CVE-2020-25367CRITICAL9.8A command injection vulnerability was discovered in the HNAP1 protocol in D-Link DIR-823G devices with firmware V1.0.2B0...
CVE-2020-18262CRITICAL9.8ED01-CMS v1.0 was discovered to contain a SQL injection in the component cposts.php via the cid parameter.
CVE-2020-18261CRITICAL9.8An arbitrary file upload vulnerability in the image upload function of ED01-CMS v1.0 allows attackers to execute arbitra...
CVE-2020-24743CRITICAL9.8An issue was found in /showReports.do Zoho ManageEngine Applications Manager up to 14550, allows attackers to gain escal...
CVE-2020-24000CRITICAL9.8SQL Injection vulnerability in eyoucms cms v1.4.7, allows attackers to execute arbitrary code and disclose sensitive inf...
CVE-2020-23679CRITICAL9.8Buffer overflow vulnerability in Renleilei1992 Linux_Network_Project 1.0, allows attackers to execute arbitrary code, vi...
CVE-2020-20982CRITICAL9.6Cross Site Scripting (XSS) vulnerability in shadoweb wdja v1.5.1, allows attackers to execute arbitrary code and gain es...
CVE-2020-5955CRITICAL9.8An issue was discovered in Int15MicrocodeSmm in Insyde InsydeH2O before 2021-10-14 on Intel client chipsets. A caller ma...
CVE-2020-6492CRITICAL9.6Use after free in ANGLE in Google Chrome prior to 83.0.4103.97 allowed a remote attacker to potentially perform a sandbo...
CVE-2020-23754CRITICAL9.6Cross Site Scripting (XSS) vulnerability in infusions/member_poll_panel/poll_admin.php in PHP-Fusion 9.03.50, allows att...
CVE-2020-23719CRITICAL9.6Cross site scripting (XSS) vulnerability in application/controllers/AdminController.php in xujinliang zibbs 1.0, allows ...
CVE-2020-23718CRITICAL9.6Cross site scripting (XSS) vulnerability in xujinliang zibbs 1.0, allows attackers to execute arbitrary code via the rou...
CVE-2020-23685CRITICAL9.8SQL Injection vulnerability in 188Jianzhan v2.1.0, allows attackers to execute arbitrary code and gain escalated privile...
CVE-2020-18440CRITICAL9.8Buffer overflow vulnerability in framework/init.php in qinggan phpok 5.1, allows attackers to execute arbitrary code.
CVE-2020-18439CRITICAL9.1An issue was discoverered in in function edit_save_f in framework/admin/tpl_control.php in qinggan phpok 5.1, allows att...
CVE-2020-36381CRITICAL9.8An issue was discovered in the singleCrunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary cod...
CVE-2020-36380CRITICAL9.8An issue was discovered in the crunch function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via ...
CVE-2020-36379CRITICAL9.8An issue was discovered in the remove function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via ...
CVE-2020-36378CRITICAL9.8An issue was discovered in the packageCmd function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code ...
CVE-2020-36377CRITICAL9.8An issue was discovered in the dump function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via th...
CVE-2020-36376CRITICAL9.8An issue was discovered in the list function in shenzhim aaptjs 1.3.1, allows attackers to execute arbitrary code via th...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now