2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-21387 | MEDIUM | 6.1 | 0.6% | Oct 4, 2021 | A cross-site scripting (XSS) vulnerability in the parameter type_en of Maccms 10 allows attackers to obtain the administ... |
| CVE-2020-28119 | MEDIUM | 6.1 | 0.7% | Oct 4, 2021 | Cross site scripting vulnerability in 53KF < 2.0.0.2 that allows for arbitrary code to be executed via crafted HTML stat... |
| CVE-2020-21228 | MEDIUM | 6.1 | 1.0% | Oct 1, 2021 | JIZHICMS 1.5.1 contains a cross-site scripting (XSS) vulnerability in the component /user/release.html, which allows att... |
| CVE-2020-21014 | MEDIUM | 6.5 | 0.9% | Oct 1, 2021 | emlog v6.0.0 contains an arbitrary file deletion vulnerability in admin/plugin.php. |
| CVE-2020-20799 | MEDIUM | 5.4 | 0.5% | Sep 30, 2021 | JeeCMS 1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary web ... |
| CVE-2020-20664 | MEDIUM | 6.5 | 0.8% | Sep 30, 2021 | libiec_iccp_mod v1.5 contains a segmentation violation in the component server_example1.c. |
| CVE-2020-20663 | MEDIUM | 6.5 | 0.8% | Sep 30, 2021 | libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_connection.c. |
| CVE-2020-20662 | MEDIUM | 6.5 | 0.8% | Sep 30, 2021 | libiec_iccp_mod v1.5 contains a heap-buffer-overflow in the component mms_client_example1.c. |
| CVE-2020-20781 | MEDIUM | 5.4 | 0.5% | Sep 29, 2021 | A stored cross-site scripting (XSS) vulnerability in /ucms/index.php?do=list_edit of UCMS 1.4.7 allows attackers to exec... |
| CVE-2020-20131 | MEDIUM | 5.4 | 0.6% | Sep 29, 2021 | LaraCMS v1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows atackers to execute arbitrary web... |
| CVE-2020-20129 | MEDIUM | 5.4 | 0.6% | Sep 29, 2021 | LaraCMS v1.0.1 contains a stored cross-site scripting (XSS) vulnerability which allows attackers to execute arbitrary we... |
| CVE-2020-20125 | MEDIUM | 6.1 | 0.6% | Sep 28, 2021 | EARCLINK ESPCMS-P8 contains a cross-site scripting (XSS) vulnerability in espcms_web\espcms_load.php. |
| CVE-2020-20696 | MEDIUM | 5.4 | 0.5% | Sep 27, 2021 | A cross-site scripting (XSS) vulnerability in /admin/content/post of GilaCMS v1.11.4 allows attackers to execute arbitra... |
| CVE-2020-20695 | MEDIUM | 5.4 | 0.5% | Sep 27, 2021 | A stored cross-site scripting (XSS) vulnerability in GilaCMS v1.11.4 allows attackers to execute arbitrary web scripts o... |
| CVE-2020-20691 | MEDIUM | 6.5 | 0.9% | Sep 27, 2021 | An issue in Monstra CMS v3.0.4 allows attackers to execute arbitrary web scripts or HTML via bypassing the file extensio... |
| CVE-2020-20508 | MEDIUM | 6.1 | 0.7% | Sep 24, 2021 | Shopkit v2.7 contains a reflective cross-site scripting (XSS) vulnerability in the /account/register component, which al... |
| CVE-2020-19950 | MEDIUM | 4.8 | 0.6% | Sep 23, 2021 | A cross-site scripting (XSS) vulnerability in the /banner/add.html component of YzmCMS v5.3 allows attackers to execute ... |
| CVE-2020-19949 | MEDIUM | 4.8 | 0.6% | Sep 23, 2021 | A cross-site scripting (XSS) vulnerability in the /link/add.html component of YzmCMS v5.3 allows attackers to execute ar... |
| CVE-2020-24327 | MEDIUM | 5.3 | 1.0% | Sep 23, 2021 | Server Side Request Forgery (SSRF) vulnerability exists in Discourse 2.3.2 and 2.6 via the email function. When writing ... |
| CVE-2020-4941 | MEDIUM | 4.3 | 0.7% | Sep 23, 2021 | IBM Edge 4.2 could reveal sensitive version information about the server from error pages that could aid an attacker in ... |
| CVE-2020-23481 | MEDIUM | 5.4 | 0.5% | Sep 22, 2021 | CMS Made Simple 2.2.14 was discovered to contain a cross-site scripting (XSS) vulnerability which allows attackers to ex... |
| CVE-2020-23273 | MEDIUM | 5.5 | 0.6% | Sep 22, 2021 | Heap-buffer overflow in the randomize_iparp function in edit_packet.c. of Tcpreplay v4.3.2 allows attackers to cause a d... |
| CVE-2020-23269 | MEDIUM | 5.5 | 0.6% | Sep 22, 2021 | An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer o... |
| CVE-2020-23266 | MEDIUM | 5.5 | 0.6% | Sep 22, 2021 | An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow whi... |
| CVE-2020-19554 | MEDIUM | 6.1 | 0.6% | Sep 21, 2021 | Cross Site Scripting (XSS) vulnerability exists in ManageEngine OPManager <=12.5.174 when the API key contains an XML-ba... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now