2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-20896 | HIGH | 8.8 | 1.1% | Sep 20, 2021 | An issue was discovered in function latm_write_packet in libavformat/latmenc.c in Ffmpeg 4.2.1, allows attackers to caus... |
| CVE-2020-20892 | HIGH | 8.8 | 1.1% | Sep 20, 2021 | An issue was discovered in function filter_frame in libavfilter/vf_lenscorrection.c in Ffmpeg 4.2.1, allows attackers to... |
| CVE-2020-20891 | HIGH | 8.8 | 1.2% | Sep 20, 2021 | Buffer Overflow vulnerability in function config_input in libavfilter/vf_gblur.c in Ffmpeg 4.2.1, allows attackers to ca... |
| CVE-2020-21548 | HIGH | 8.8 | 1.0% | Sep 17, 2021 | Libsixel 1.8.3 contains a heap-based buffer overflow in the sixel_encode_highcolor function in tosixel.c. |
| CVE-2020-21547 | HIGH | 8.8 | 1.0% | Sep 17, 2021 | Libsixel 1.8.2 contains a heap-based buffer overflow in the dither_func_fs function in tosixel.c. |
| CVE-2020-12080 | HIGH | 7.5 | 2.0% | Sep 17, 2021 | A Denial of Service vulnerability has been identified in FlexNet Publisher's lmadmin.exe version 11.16.6. A certain mess... |
| CVE-2020-21598 | HIGH | 8.8 | 1.7% | Sep 16, 2021 | libde265 v1.0.4 contains a heap buffer overflow in the ff_hevc_put_unweighted_pred_8_sse function, which can be exploite... |
| CVE-2020-14109 | HIGH | 7.2 | 2.2% | Sep 16, 2021 | There is command injection in the meshd program in the routing system, resulting in command execution under administrato... |
| CVE-2020-21483 | HIGH | 7.2 | 1.6% | Sep 15, 2021 | An arbitrary file upload vulnerability in Jizhicms v1.5 allows attackers to execute arbitrary code via a crafted .jpg fi... |
| CVE-2020-21481 | HIGH | 7.2 | 1.6% | Sep 15, 2021 | An arbitrary file upload vulnerability in RGCMS v1.06 allows attackers to execute arbitrary code via a crafted .txt file... |
| CVE-2020-21480 | HIGH | 7.2 | 1.6% | Sep 15, 2021 | An arbitrary file write vulnerability in RGCMS v1.06 allows attackers to execute arbitrary code via a crafted PHP file. |
| CVE-2020-21126 | HIGH | 8.8 | 0.6% | Sep 15, 2021 | MetInfo 7.0.0 contains a Cross-Site Request Forgery (CSRF) via admin/?n=admin&c=index&a=doSaveInfo. |
| CVE-2020-19159 | HIGH | 8.8 | 1.0% | Sep 15, 2021 | Cross Site Request Forgery (CSRF) in LaikeTui v3 allows remote attackers to execute arbitrary code via the component '/i... |
| CVE-2020-19155 | HIGH | 8.8 | 7.3% | Sep 15, 2021 | Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive information and/or ... |
| CVE-2020-19151 | HIGH | 8.8 | 4.8% | Sep 15, 2021 | Command Injection in Jfinal CMS v4.7.1 and earlier allows remote attackers to execute arbitrary code by uploading a mali... |
| CVE-2020-19150 | HIGH | 8.1 | 3.4% | Sep 15, 2021 | Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive information or caus... |
| CVE-2020-3960 | HIGH | 8.4 | 0.3% | Sep 15, 2021 | VMware ESXi (6.7 before ESXi670-202006401-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and... |
| CVE-2020-35340 | HIGH | 7.5 | 1.1% | Sep 15, 2021 | A local file inclusion vulnerability in ExpertPDF 9.5.0 through 14.1.0 allows attackers to read the file contents from f... |
| CVE-2020-20672 | HIGH | 7.8 | 0.9% | Sep 13, 2021 | An arbitrary file upload vulnerability in /admin/upload/uploadfile of KiteCMS V1.1 allows attackers to getshell via a cr... |
| CVE-2020-20671 | HIGH | 8.8 | 0.5% | Sep 13, 2021 | A cross-site request forgery (CSRF) in KiteCMS V1.1 allows attackers to arbitrarily add an administrator account. |
| CVE-2020-20670 | HIGH | 8.8 | 1.7% | Sep 13, 2021 | An arbitrary file upload vulnerability in /admin/media/upload of ZKEACMS V3.2.0 allows attackers to execute arbitrary co... |
| CVE-2020-27969 | HIGH | 7.3 | 0.5% | Sep 13, 2021 | Yandex Browser for Android 20.8.4 allows remote attackers to perform SOP bypass and addresss bar spoofing |
| CVE-2020-19280 | HIGH | 8.8 | 0.8% | Sep 9, 2021 | Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sens... |
| CVE-2020-19263 | HIGH | 8.8 | 0.6% | Sep 9, 2021 | A cross-site request forgery (CSRF) in MipCMS v5.0.1 allows attackers to arbitrarily escalate user privileges to adminis... |
| CVE-2020-7874 | HIGH | 8.8 | 0.6% | Sep 9, 2021 | Download of code without integrity check vulnerability in NEXACRO14 Runtime ActiveX control of tobesoft Co., Ltd allows ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now