2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-24826 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A vulnerability in the elf::section::as_strtab function of Libelfin v0.3 allows attackers to cause a denial of service (... |
| CVE-2020-24825 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A vulnerability in the line_table::line_table function of Libelfin v0.3 allows attackers to cause a denial of service (D... |
| CVE-2020-24824 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A global buffer overflow issue in the dwarf::line_table::line_table function of Libelfin v0.3 allows attackers to cause ... |
| CVE-2020-24823 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A vulnerability in the dwarf::to_string function of Libelfin v0.3 allows attackers to cause a denial of service (DOS) th... |
| CVE-2020-24822 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A vulnerability in the dwarf::cursor::uleb function of Libelfin v0.3 allows attackers to cause a denial of service (DOS)... |
| CVE-2020-24821 | MEDIUM | 5.5 | 0.7% | Aug 4, 2021 | A vulnerability in the dwarf::cursor::skip_form function of Libelfin v0.3 allows attackers to cause a denial of service ... |
| CVE-2020-4707 | MEDIUM | 5.4 | 0.5% | Aug 4, 2021 | IBM API Connect 5.0.0.0 through 5.0.8.11 is vulnerable to cross-site scripting. This vulnerability allows users to embed... |
| CVE-2020-26564 | MEDIUM | 6.5 | 1.1% | Jul 31, 2021 | ObjectPlanet Opinio before 7.15 allows XXE attacks via three steps: modify a .css file to have <!ENTITY content, create ... |
| CVE-2020-26563 | MEDIUM | 6.1 | 1.0% | Jul 30, 2021 | ObjectPlanet Opinio before 7.14 allows reflected XSS via the survey/admin/surveyAdmin.do?action=viewSurveyAdmin query st... |
| CVE-2020-22765 | MEDIUM | 6.1 | 0.6% | Jul 30, 2021 | Cross Site Scripting (XSS) vulnerability in NukeViet cms 4.4.0 via the editor in the News module. |
| CVE-2020-21854 | MEDIUM | 6.1 | 0.6% | Jul 30, 2021 | Cross Site Scripting vulnerabiity exists in WDScanner 1.1 in the system management page. |
| CVE-2020-20701 | MEDIUM | 4.8 | 0.6% | Jul 30, 2021 | A stored cross site scripting (XSS) vulnerability in /app/config/of S-CMS PHP v3.0 allows attackers to execute arbitrary... |
| CVE-2020-20700 | MEDIUM | 4.8 | 0.6% | Jul 30, 2021 | A stored cross site scripting (XSS) vulnerability in /app/form_add/of S-CMS PHP v3.0 allows attackers to execute arbitra... |
| CVE-2020-20699 | MEDIUM | 4.8 | 0.5% | Jul 30, 2021 | A cross site scripting (XSS) vulnerability in S-CMS PHP v3.0 allows attackers to execute arbitrary web scripts or HTML v... |
| CVE-2020-19118 | MEDIUM | 5.4 | 0.5% | Jul 30, 2021 | Cross Site Scripting (XSS) vulnerabiity in YzmCMS 5.2 via the site_code parameter in admin/index/init.html. |
| CVE-2020-18158 | MEDIUM | 5.4 | 0.6% | Jul 30, 2021 | Cross Site Scripting (XSS) vulnerability in HuCart 5.7.4 via nickname in index.php. |
| CVE-2020-15948 | MEDIUM | 6.1 | 0.9% | Jul 30, 2021 | eGain Chat 15.5.5 allows XSS via the Name (aka full_name) field. |
| CVE-2020-5329 | MEDIUM | 6.1 | 0.9% | Jul 29, 2021 | Dell EMC Avamar Server contains an open redirect vulnerability. A remote unauthenticated attacker may exploit this vulne... |
| CVE-2020-5004 | MEDIUM | 5.4 | 0.5% | Jul 28, 2021 | IBM Jazz Foundation products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary ... |
| CVE-2020-4974 | MEDIUM | 6.3 | 0.6% | Jul 28, 2021 | IBM Jazz Foundation products are vulnerable to server side request forgery (SSRF). This may allow an authenticated attac... |
| CVE-2020-23243 | MEDIUM | 4.8 | 0.5% | Jul 26, 2021 | Cross Site Scripting (XSS) vulnerability in NavigateCMS NavigateCMS 2.9 via the name="wrong_path_redirect" feature. |
| CVE-2020-23242 | MEDIUM | 4.8 | 0.5% | Jul 26, 2021 | Cross Site Scripting (XSS) vulnerability in NavigateCMS 2.9 when performing a Create or Edit via the Tools feature. |
| CVE-2020-23241 | MEDIUM | 4.8 | 0.5% | Jul 26, 2021 | Cross Site Scripting (XSS) vulnerability in CMS Made Simple 2.2.14 in "Extra" via 'News > Article" feature. |
| CVE-2020-23240 | MEDIUM | 4.8 | 0.5% | Jul 26, 2021 | Cross Site Scripting (XSS) vulnerablity in CMS Made Simple 2.2.14 via the Logic field in the Content Manager feature. |
| CVE-2020-23239 | MEDIUM | 4.8 | 0.5% | Jul 26, 2021 | Cross Site Scripting (XSS) vulnerability in Textpattern CMS 4.8.1 via Custom fields in the Menu Preferences feature. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now