2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-17485 | CRITICAL | 9.8 | 1.8% | Dec 16, 2023 | A Remote Code Execution vulnerability exist in Uffizio's GPS Tracker all versions. The web server can be compromised by ... |
| CVE-2020-17484 | MEDIUM | 6.1 | 0.5% | Dec 16, 2023 | An Open Redirection vulnerability exists in Uffizio's GPS Tracker all versions allows an attacker to construct a URL wit... |
| CVE-2020-17483 | HIGH | 7.5 | 0.8% | Dec 16, 2023 | An improper access control vulnerability exists in Uffizio's GPS Tracker all versions that lead to sensitive information... |
| CVE-2020-10676 | HIGH | 8.8 | 1.0% | Dec 12, 2023 | In Rancher 2.x before 2.6.13 and 2.7.x before 2.7.4, an incorrectly applied authorization check allows users who have ce... |
| CVE-2020-28369 | HIGH | 7.8 | 0.2% | Dec 12, 2023 | In BeyondTrust Privilege Management for Windows (aka PMfW) through 5.7, a SYSTEM installation causes Cryptbase.dll to be... |
| CVE-2020-12614 | HIGH | 7.8 | 0.1% | Dec 12, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. If the publisher criteria is select... |
| CVE-2020-12612 | HIGH | 7.8 | 0.3% | Dec 12, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When specifying a program to elevat... |
| CVE-2020-12615 | HIGH | 7.8 | 0.2% | Dec 12, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. When adding the Add Admin token to ... |
| CVE-2020-12613 | HIGH | 8.8 | 0.8% | Dec 11, 2023 | An issue was discovered in BeyondTrust Privilege Management for Windows through 5.6. An attacker can spawn a process wit... |
| CVE-2020-25835 | MEDIUM | 5.4 | 0.4% | Dec 9, 2023 | A potential vulnerability has been identified in Micro Focus ArcSight Management Center. The vulnerability could be remo... |
| CVE-2020-36768 | CRITICAL | 9.8 | 0.8% | Dec 3, 2023 | A vulnerability was found in rl-institut NESP2 Initial Release/1.0. It has been classified as critical. Affected is an u... |
| CVE-2020-11448 | MEDIUM | 6.1 | 0.5% | Nov 17, 2023 | An issue was discovered on Bell HomeHub 3000 SG48222070 devices. There is XSS related to the email field and the login p... |
| CVE-2020-11447 | MEDIUM | 4.3 | 0.7% | Nov 17, 2023 | An issue was discovered on Bell HomeHub 3000 SG48222070 devices. Remote authenticated users can retrieve the serial numb... |
| CVE-2020-28407 | HIGH | 7.1 | 0.3% | Nov 3, 2023 | In swtpm before 0.4.2 and 0.5.x before 0.5.1, a local attacker may be able to overwrite arbitrary files via a symlink at... |
| CVE-2020-36767 | HIGH | 7.5 | 0.4% | Oct 30, 2023 | tinyfiledialogs (aka tiny file dialogs) before 3.8.0 allows shell metacharacters in titles, messages, and other input da... |
| CVE-2020-25870 | — | — | — | Oct 30, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-17477 | MEDIUM | 6.5 | 0.4% | Oct 26, 2023 | Incorrect LDAP ACLs in ucs-school-ldap-acls-master in UCS@school before 4.4v5-errata allow remote teachers, staff, and s... |
| CVE-2020-36759 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Woody code snippets plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includin... |
| CVE-2020-36758 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The RSS Aggregator by Feedzy plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and inc... |
| CVE-2020-36755 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Customizr theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 4.3.0. T... |
| CVE-2020-36754 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Paid Memberships Pro plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and includ... |
| CVE-2020-36753 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Hueman theme for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.6.3. This... |
| CVE-2020-36751 | MEDIUM | 4.3 | 0.4% | Oct 20, 2023 | The Coupon Creator plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 3.... |
| CVE-2020-36714 | HIGH | 8.1 | 0.4% | Oct 20, 2023 | The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_admin... |
| CVE-2020-36706 | CRITICAL | 9.8 | 1.8% | Oct 20, 2023 | The Simple:Press – WordPress Forum Plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now