2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-36929HIGH8.5Brother BRPrint Auditor 3.0.7 contains an unquoted service path vulnerability in its Windows service configurations that...
CVE-2020-36928HIGH8.5Brother BRAgent 1.38 contains an unquoted service path vulnerability in the WBA_Agent_Client service running with LocalS...
CVE-2020-36927HIGH8.5DiskPulse Enterprise 13.6.14 contains an unquoted service path vulnerability in its Windows service configuration that a...
CVE-2020-36926MEDIUM5.3SmarterTrack 7922 contains an information disclosure vulnerability in the Chat Management search form that reveals agent...
CVE-2020-36919MEDIUM6.1WPForms 1.7.8 contains a cross-site scripting vulnerability in the slider import search feature and tab parameter. Attac...
CVE-2020-36911CRITICAL9.8Covenant 0.1.3 - 0.5 contains a remote code execution vulnerability that allows attackers to craft malicious JWT tokens ...
CVE-2020-36875CRITICAL9.3AccessAlly WordPress plugin versions prior to 3.3.2 contain an unauthenticated arbitrary PHP code execution vulnerabilit...
CVE-2020-36925CRITICAL9.8Arteco Web Client DVR/NVR contains a session hijacking vulnerability with insufficient session ID complexity that allows...
CVE-2020-36924MEDIUM6.1Sony BRAVIA Digital Signage 1.7.8 contains a remote file inclusion vulnerability that allows attackers to inject arbitra...
CVE-2020-36923CRITICAL9.8Sony BRAVIA Digital Signage 1.7.8 contains an insecure direct object reference vulnerability that allows attackers to by...
CVE-2020-36922HIGH7.5Sony BRAVIA Digital Signage 1.7.8 contains an information disclosure vulnerability that allows unauthenticated attackers...
CVE-2020-36921HIGH7.5RED-V Super Digital Signage System 5.1.1 contains an information disclosure vulnerability that allows unauthenticated at...
CVE-2020-36920HIGH8.8iDS6 DSSPro Digital Signage System 6.2 contains an improper access control vulnerability that allows authenticated users...
CVE-2020-36918MEDIUM5.1iDS6 DSSPro Digital Signage System 6.2 contains a cross-site request forgery vulnerability that allows attackers to perf...
CVE-2020-36917HIGH8.6iDS6 DSSPro Digital Signage System 6.2 contains a sensitive information disclosure vulnerability that allows remote atta...
CVE-2020-36916HIGH8.8TDM Digital Signage PC Player 4.1.0.4 contains an elevation of privileges vulnerability that allows authenticated users ...
CVE-2020-36915HIGH8.7Adtec Digital SignEdje Digital Signage Player v2.08.28 contains multiple hardcoded default credentials that allow unauth...
CVE-2020-36914HIGH8.6QiHang Media Web Digital Signage 3.0.9 contains a sensitive information disclosure vulnerability that allows remote atta...
CVE-2020-36913HIGH8.5All-Dynamics Software enlogic:show 2.0.2 contains a session fixation vulnerability that allows attackers to set a predef...
CVE-2020-36912CRITICAL9.8Plexus anblick Digital Signage Management 3.1.13 contains an open redirect vulnerability in the 'PantallaLogin' script t...
CVE-2020-36910HIGH8.8Cayin Signage Media Player 3.0 contains an authenticated remote command injection vulnerability in system.cgi and wizard...
CVE-2020-36909HIGH8.8SnapGear Management Console SG560 3.1.5 contains a file manipulation vulnerability that allows authenticated users to re...
CVE-2020-36908HIGH8.8SnapGear Management Console SG560 version 3.1.5 contains a cross-site request forgery vulnerability that allows attacker...
CVE-2020-36907HIGH8.7Aerohive HiveOS contains a denial of service vulnerability in the NetConfig UI that allows unauthenticated attackers to ...
CVE-2020-36906MEDIUM5.3P5 FNIP-8x16A FNIP-4xSH 1.0.20 contains a cross-site request forgery vulnerability that allows attackers to perform admi...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now