2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-21474 | CRITICAL | 9.8 | 1.2% | Jun 20, 2023 | File Upload vulnerability in NucleusCMS v.3.71 allows a remote attacker to execute arbitrary code via the /nucleus/plugi... |
| CVE-2020-21400 | HIGH | 7.2 | 1.1% | Jun 20, 2023 | SQL injection vulnerability in gaozhifeng PHPMyWind v.5.6 allows a remote attacker to execute arbitrary code via the id ... |
| CVE-2020-21366 | HIGH | 8 | 0.3% | Jun 20, 2023 | Cross Site Request Forgery vulnerability in GreenCMS v.2.3 allows an attacker to gain privileges via the adduser functio... |
| CVE-2020-21325 | HIGH | 8.8 | 1.3% | Jun 20, 2023 | An issue in WUZHI CMS v.4.1.0 allows a remote attacker to execute arbitrary code via the set_chache method of the functi... |
| CVE-2020-21268 | MEDIUM | 6.1 | 0.6% | Jun 20, 2023 | Cross Site Scripting vulnerability in EasySoft ZenTao v.11.6.4 allows a remote attacker to execute arbitrary code via th... |
| CVE-2020-21252 | HIGH | 8.8 | 0.4% | Jun 20, 2023 | Cross Site Request Forgery vulnerability in Neeke HongCMS 3.0.0 allows a remote attacker to execute arbitrary code and e... |
| CVE-2020-21246 | MEDIUM | 5.4 | 0.6% | Jun 20, 2023 | Cross Site Scripting vulnerability in YiiCMS v.1.0 allows a remote attacker to execute arbitrary code via the news funct... |
| CVE-2020-21174 | CRITICAL | 9.8 | 1.3% | Jun 20, 2023 | File Upload vulenrability in liufee CMS v.2.0.7.1 allows a remote attacker to execute arbitrary code via the image suffi... |
| CVE-2020-21058 | MEDIUM | 6.1 | 0.6% | Jun 20, 2023 | Cross Site Scripting vulnerability in Typora v.0.9.79 allows a remote attacker to execute arbitrary code via the mermaid... |
| CVE-2020-21052 | MEDIUM | 6.1 | 0.6% | Jun 20, 2023 | Cross Site Scripting vulnerability in zrlog zrlog v.2.1.3 allows a remote attacker to execute arbitrary code via the nic... |
| CVE-2020-20969 | HIGH | 7.2 | 6.3% | Jun 20, 2023 | File Upload vulnerability in PluckCMS v.4.7.10 allows a remote attacker to execute arbitrary code via the trashcan_resto... |
| CVE-2020-20919 | HIGH | 7.2 | 1.3% | Jun 20, 2023 | File upload vulnerability in Pluck CMS v.4.7.10-dev2 allows a remote attacker to execute arbitrary code and access sensi... |
| CVE-2020-20918 | HIGH | 7.2 | 1.1% | Jun 20, 2023 | An issue discovered in Pluck CMS v.4.7.10-dev2 allows a remote attacker to execute arbitrary php code via the hidden par... |
| CVE-2020-20735 | CRITICAL | 9.8 | 1.1% | Jun 20, 2023 | File Upload vulnerability in LJCMS v.4.3.R60321 allows a remote attacker to execute arbitrary code via the ljcms/index.p... |
| CVE-2020-20726 | HIGH | 8.8 | 0.7% | Jun 20, 2023 | Cross Site Request Forgery vulnerability in Gila GilaCMS v.1.11.4 allows a remote attacker to execute arbitrary code via... |
| CVE-2020-20725 | MEDIUM | 6.1 | 0.5% | Jun 20, 2023 | Cross Site Scripting vulnerability in taogogo taoCMS v.2.5 beta5.1 allows remote attacker to execute arbitrary code via ... |
| CVE-2020-20718 | CRITICAL | 9.8 | 1.3% | Jun 20, 2023 | File Upload vulnerability in PluckCMS v.4.7.10 dev versions allows a remote attacker to execute arbitrary code via a cra... |
| CVE-2020-20703 | CRITICAL | 9.8 | 1.5% | Jun 20, 2023 | Buffer Overflow vulnerability in VIM v.8.1.2135 allows a remote attacker to execute arbitrary code via the operand param... |
| CVE-2020-20697 | MEDIUM | 4.8 | 0.5% | Jun 20, 2023 | Cross Site Scripting vulnerability in khodakhah NodCMS v.3.0 allows a remote attacker to execute arbitrary code and gain... |
| CVE-2020-20636 | HIGH | 7.5 | 0.7% | Jun 20, 2023 | SQL injection vulnerability found in Joyplus-cms v.1.6.0 allows a remote attacker to access sensitive information via th... |
| CVE-2020-20502 | MEDIUM | 6.5 | 0.5% | Jun 20, 2023 | Cross Site Request Forgery found in yzCMS v.2.0 allows a remote attacker to execute arbitrary code via the token check f... |
| CVE-2020-20491 | HIGH | 7.2 | 1.1% | Jun 20, 2023 | SQL injection vulnerability in OpenCart v.2.2.00 thru 3.0.3.2 allows a remote attacker to execute arbitrary code via the... |
| CVE-2020-20413 | CRITICAL | 9.8 | 1.3% | Jun 20, 2023 | SQL injection vulnerability found in WUZHICMS v.4.1.0 allows a remote attacker to execute arbitrary code via the checkti... |
| CVE-2020-20335 | HIGH | 7.5 | 1.0% | Jun 20, 2023 | Buffer Overflow vulnerability in Antirez Kilo before commit 7709a04ae8520c5b04d261616098cebf742f5a23 allows a remote att... |
| CVE-2020-20070 | MEDIUM | 6.1 | 0.6% | Jun 20, 2023 | Cross Site Scripting vulnerability found in wkeyuan DWSurvey 1.0 allows a remote attacker to execute arbitrary code via ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now