2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-36037 | HIGH | 8.8 | 0.8% | Aug 11, 2023 | An issue was disocvered in wuzhicms version 4.1.0, allows remote attackers to execte arbitrary code via the setting para... |
| CVE-2020-36034 | CRITICAL | 9.8 | 1.3% | Aug 11, 2023 | SQL Injection vulnerability in oretnom23 School Faculty Scheduling System version 1.0, allows remote attacker to execute... |
| CVE-2020-36024 | MEDIUM | 5.5 | 0.5% | Aug 11, 2023 | An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (Do... |
| CVE-2020-36023 | MEDIUM | 6.5 | 0.9% | Aug 11, 2023 | An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (Do... |
| CVE-2020-35990 | MEDIUM | 5.5 | 0.2% | Aug 11, 2023 | Buffer Overflow vulnerability in cFilenameInit parameter in browseForDoc function in Foxit Software Foxit PDF Reader ver... |
| CVE-2020-35141 | HIGH | 7.5 | 0.7% | Aug 11, 2023 | An issue was discovered in OFPQueueGetConfigReply in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers t... |
| CVE-2020-35139 | HIGH | 7.5 | 0.7% | Aug 11, 2023 | An issue was discovered in OFPBundleCtrlMsg in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to caus... |
| CVE-2020-28849 | MEDIUM | 5.4 | 0.4% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in ChurchCRM version 4.2.1, allows remote attckers to execute arbitrary code an... |
| CVE-2020-28848 | HIGH | 8.8 | 0.9% | Aug 11, 2023 | CSV Injection vulnerability in ChurchCRM version 4.2.0, allows remote attackers to execute arbitrary code via crafted CS... |
| CVE-2020-28840 | HIGH | 7.8 | 0.3% | Aug 11, 2023 | Buffer Overflow vulnerability in jpgfile.c in Matthias-Wandel jhead version 3.04, allows local attackers to execute arbi... |
| CVE-2020-28717 | MEDIUM | 6.1 | 0.5% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in content1 parameter in demo.jsp in kindsoft kindeditor version 4.1.12, allows... |
| CVE-2020-27544 | CRITICAL | 9.8 | 1.0% | Aug 11, 2023 | An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1a... |
| CVE-2020-27514 | CRITICAL | 9.1 | 1.0% | Aug 11, 2023 | Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows rem... |
| CVE-2020-27449 | MEDIUM | 6.1 | 2.8% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in Query Report feature in Zoho ManageEngine Password Manager Pro version 11001... |
| CVE-2020-25915 | MEDIUM | 5.4 | 0.4% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in UserController.php in ThinkCMF version 5.1.5, allows attackers to execute ar... |
| CVE-2020-24950 | HIGH | 8.8 | 1.1% | Aug 11, 2023 | SQL Injection vulnerability in file Base_module_model.php in Daylight Studio FUEL-CMS version 1.4.9, allows remote attac... |
| CVE-2020-24922 | HIGH | 8.8 | 0.4% | Aug 11, 2023 | Cross Site Request Forgery (CSRF) vulnerability in xxl-job-admin/user/add in xuxueli xxl-job version 2.2.0, allows remot... |
| CVE-2020-24904 | MEDIUM | 6.5 | 0.7% | Aug 11, 2023 | An issue was discovered in attach parameter in GNOME Gmail version 2.5.4, allows remote attackers to gain sensitive info... |
| CVE-2020-24872 | MEDIUM | 6.1 | 0.5% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in backend/pages/modify.php in Lepton-CMS version 4.7.0, allows remote attacker... |
| CVE-2020-24804 | MEDIUM | 6.5 | 0.5% | Aug 11, 2023 | Plaintext Password vulnerability in AddAdmin.py in cms-dev/cms v1.4.rc1, allows attackers to gain sensitive information ... |
| CVE-2020-24222 | HIGH | 7.8 | 0.3% | Aug 11, 2023 | Buffer Overflow vulnerability in jfif_decode() function in rockcarry ffjpeg through version 1.0.0, allows local attacker... |
| CVE-2020-24221 | MEDIUM | 5.5 | 0.3% | Aug 11, 2023 | An issue was discovered in GetByte function in miniupnp ngiflib version 0.4, allows local attackers to cause a denial of... |
| CVE-2020-24187 | MEDIUM | 5.5 | 0.3% | Aug 11, 2023 | An issue was discovered in ecma-helpers.c in jerryscript version 2.3.0, allows local attackers to cause a denial of serv... |
| CVE-2020-24075 | MEDIUM | 6.1 | 0.5% | Aug 11, 2023 | Cross Site Scripting (XSS) vulnerability in Name Input Field in Contact Us form in Laborator Kalium before 3.0.4, allows... |
| CVE-2020-23595 | HIGH | 8.8 | 0.4% | Aug 11, 2023 | Cross Site Request Forgery (CSRF) vulnerability in yzmcms version 5.6, allows remote attackers to escalate privileges an... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now