2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-15940 | MEDIUM | 5.4 | 0.7% | Nov 2, 2021 | An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and belo... |
| CVE-2020-12814 | MEDIUM | 5.4 | 0.5% | Nov 2, 2021 | A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version... |
| CVE-2020-35249 | MEDIUM | 6.1 | 1.1% | Nov 2, 2021 | Cross Site Scripting (XSS) vulnerability in ElkarBackup 1.3.3, allows attackers to execute arbitrary code via the name p... |
| CVE-2020-27406 | MEDIUM | 5.4 | 0.8% | Nov 2, 2021 | Cross Site Scripting (XSS) vulnerability in DynPG 4.9.1, allows authenticated attackers to execute arbitrary code via th... |
| CVE-2020-36505 | MEDIUM | 6.5 | 0.6% | Nov 1, 2021 | The Delete All Comments Easily WordPress plugin through 1.3 is lacking Cross-Site Request Forgery (CSRF) checks, which c... |
| CVE-2020-36504 | MEDIUM | 6.5 | 0.6% | Nov 1, 2021 | The WP-Pro-Quiz WordPress plugin through 0.37 does not have CSRF check in place when deleting a quiz, which could allow ... |
| CVE-2020-25881 | MEDIUM | 5.5 | 1.2% | Oct 29, 2021 | A vulnerability was discovered in the filename parameter in pathindex.php?r=cms-backend/attachment/delete&sub=&filename=... |
| CVE-2020-25873 | MEDIUM | 6.5 | 1.1% | Oct 29, 2021 | A directory traversal vulnerability in the component system/manager/class/web/database.php was discovered in Baijiacms V... |
| CVE-2020-25872 | MEDIUM | 4.9 | 1.1% | Oct 29, 2021 | A vulnerability exists within the FileManagerController.php function in FrogCMS 0.9.5 which allows an attacker to perfor... |
| CVE-2020-29629 | MEDIUM | 5.5 | 0.6% | Oct 28, 2021 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A malic... |
| CVE-2020-25422 | MEDIUM | 5.4 | 0.5% | Oct 28, 2021 | A cross site scripting (XSS) vulnerability in menuedit.php of Mara CMS 7.5 allows attackers to execute arbitrary web scr... |
| CVE-2020-10005 | MEDIUM | 6.5 | 1.3% | Oct 28, 2021 | A resource exhaustion issue was addressed with improved input validation. This issue is fixed in macOS Big Sur 11.0.1. A... |
| CVE-2020-22312 | MEDIUM | 6.1 | 0.7% | Oct 28, 2021 | A cross-site scripting (XSS) vulnerability was discovered in the OJ/admin-tool /cal_scores.php function of HZNUOJ v1.0. |
| CVE-2020-22864 | MEDIUM | 6.1 | 0.8% | Oct 26, 2021 | A cross site scripting (XSS) vulnerability in the Insert Video function of Froala WYSIWYG Editor 3.1.0 allows attackers ... |
| CVE-2020-5669 | MEDIUM | 5.4 | 0.6% | Oct 26, 2021 | Cross-site scripting vulnerability in Movable Type Movable Type Premium 1.37 and earlier and Movable Type Premium Advanc... |
| CVE-2020-20908 | MEDIUM | 5.4 | 0.6% | Oct 25, 2021 | Akaunting v1.3.17 was discovered to contain a stored cross-site scripting (XSS) vulnerability which allows attackers to ... |
| CVE-2020-36502 | MEDIUM | 6.1 | 0.7% | Oct 22, 2021 | Swift File Transfer Mobile v1.1.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the devicenam... |
| CVE-2020-36501 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Multiple cross-site scripting (XSS) vulnerabilities in the Support module of SugarCRM v6.5.18 allows attackers to execut... |
| CVE-2020-36499 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | TAO Open Source Assessment Platform v3.3.0 RC02 was discovered to contain a cross-site scripting (XSS) vulnerability in ... |
| CVE-2020-36498 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | Macrob7 Macs Framework Content Management System - 1.14f contains a cross-site scripting (XSS) vulnerability in the acco... |
| CVE-2020-36497 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component makehtml... |
| CVE-2020-36496 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component sys_admi... |
| CVE-2020-36495 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component file_man... |
| CVE-2020-36494 | MEDIUM | 6.1 | 0.8% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component mychanne... |
| CVE-2020-36493 | MEDIUM | 5.4 | 0.6% | Oct 22, 2021 | DedeCMS v7.5 SP2 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the component media_ma... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now