2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36409 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitra... |
| CVE-2020-36408 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitra... |
| CVE-2020-36399 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web s... |
| CVE-2020-36398 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web s... |
| CVE-2020-36397 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in the /admin/contact/contact component of LavaLite 5.8.0 allows authe... |
| CVE-2020-36396 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in the /admin/roles/role component of LavaLite 5.8.0 allows authentica... |
| CVE-2020-36395 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in the /admin/user/team component of LavaLite 5.8.0 allows authenticat... |
| CVE-2020-23194 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in the "Import Subscribers" feature in phplist 3.5.4 and below allows ... |
| CVE-2020-23192 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows authenticated attackers to execute a... |
| CVE-2020-23190 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in the "Import emails" module in phplist 3.5.4 allows authenticated at... |
| CVE-2020-23185 | MEDIUM | 5.4 | 0.4% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in /administration/setting_security.php of PHP-Fusion 9.03.60 allows a... |
| CVE-2020-23184 | MEDIUM | 5.4 | 0.4% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in /administration/settings_registration.php of PHP-Fusion 9.03.60 all... |
| CVE-2020-23182 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | The component /php-fusion/infusions/shoutbox_panel/shoutbox_archive.php in PHP-Fusion 9.03.60 allows attackers to redire... |
| CVE-2020-23181 | MEDIUM | 5.4 | 0.4% | Jul 2, 2021 | A reflected cross site scripting (XSS) vulnerability in /administration/theme.php of PHP-Fusion 9.03.60 allows authentic... |
| CVE-2020-23179 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | A stored cross site scripting (XSS) vulnerability in administration/settings_main.php of PHP-Fusion 9.03.50 allows authe... |
| CVE-2020-23178 | MEDIUM | 5.4 | 0.5% | Jul 2, 2021 | An issue exists in PHP-Fusion 9.03.50 where session cookies are not deleted once a user logs out, allowing for an attack... |
| CVE-2020-23219 | HIGH | 8.8 | 1.6% | Jul 1, 2021 | Monstra CMS 3.0.4 allows attackers to execute arbitrary code via a crafted payload entered into the "Snippet content" fi... |
| CVE-2020-23217 | MEDIUM | 5.4 | 0.6% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or ... |
| CVE-2020-23214 | MEDIUM | 5.4 | 0.6% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or ... |
| CVE-2020-23209 | MEDIUM | 5.4 | 0.5% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or ... |
| CVE-2020-23208 | MEDIUM | 5.4 | 0.6% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or ... |
| CVE-2020-23207 | MEDIUM | 5.4 | 0.5% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in phplist 3.5.3 allows attackers to execute arbitrary web scripts or ... |
| CVE-2020-23205 | MEDIUM | 5.4 | 0.5% | Jul 1, 2021 | A stored cross site scripting (XSS) vulnerability in Monstra CMS version 3.0.4 allows attackers to execute arbitrary web... |
| CVE-2020-4935 | MEDIUM | 5.4 | 0.5% | Jul 1, 2021 | IBM Datacap Fastdoc Capture (IBM Datacap Navigator 9.1.7 ) is vulnerable to cross-site scripting. This vulnerability all... |
| CVE-2020-4902 | HIGH | 8.8 | 1.0% | Jul 1, 2021 | IBM Datacap Taskmaster Capture (IBM Datacap Navigator 9.1.7) is vulnerable to SQL injection. A remote attacker could sen... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now