2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-35546 | CRITICAL | 9.1 | 0.3% | Feb 19, 2025 | Lexmark MX6500 LW75.JD.P296 and previous devices have Incorrect Access Control via the access control settings. |
| CVE-2020-36084 | CRITICAL | 9.8 | 0.7% | Feb 5, 2025 | SQL Injection vulnerability in SourceCodester Responsive E-Learning System 1.0 allows remote attackers to inject sql que... |
| CVE-2020-8007 | CRITICAL | 9.8 | 1.8% | Nov 8, 2024 | The pwrstudio web application of EV Charger (in the server in Circontrol Raption through 5.6.2) is vulnerable to OS comm... |
| CVE-2020-36840 | CRITICAL | 9.8 | 0.4% | Oct 16, 2024 | The Timetable and Event Schedule by MotoPress plugin for WordPress is vulnerable to authorization bypass due to a missin... |
| CVE-2020-36837 | CRITICAL | 9.9 | 0.6% | Oct 16, 2024 | The ThemeGrill Demo Importer plugin for WordPress is vulnerable to authentication bypass due to a missing capability che... |
| CVE-2020-36832 | CRITICAL | 9.8 | 0.7% | Oct 16, 2024 | The Ultimate Membership Pro plugin for WordPress is vulnerable to Authentication Bypass in versions between, and includi... |
| CVE-2020-26942 | CRITICAL | 9.1 | 0.5% | Mar 21, 2024 | An issue discovered in Axigen Mail Server 10.3.x before 10.3.1.27 and 10.3.2.x before 10.3.3.1 allows unauthenticated at... |
| CVE-2020-36773 | CRITICAL | 9.8 | 0.9% | Feb 4, 2024 | Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwri... |
| CVE-2020-29504 | CRITICAL | 9.8 | 0.5% | Feb 2, 2024 | Dell BSAFE Crypto-C Micro Edition, versions before 4.1.5, and Dell BSAFE Micro Edition Suite, versions before 4.5.2, co... |
| CVE-2020-36770 | CRITICAL | 9.8 | 0.4% | Jan 15, 2024 | pkg_postinst in the Gentoo ebuild for Slurm through 22.05.3 unnecessarily calls chown to assign root's ownership on file... |
| CVE-2020-26629 | CRITICAL | 9.8 | 1.2% | Jan 10, 2024 | A JQuery Unrestricted Arbitrary File Upload vulnerability was discovered in Hospital Management System V4.0 which allows... |
| CVE-2020-13880 | CRITICAL | 9.8 | 0.6% | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+1cbf heap-based out-of-bounds write. |
| CVE-2020-13879 | CRITICAL | 9.8 | 0.6% | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+214f heap-based out-of-bounds write. |
| CVE-2020-13878 | CRITICAL | 9.8 | 0.6% | Jan 5, 2024 | IrfanView B3D PlugIns before version 4.56 has a B3d.dll!+27ef heap-based out-of-bounds write. |
| CVE-2020-17485 | CRITICAL | 9.8 | 1.8% | Dec 16, 2023 | A Remote Code Execution vulnerability exist in Uffizio's GPS Tracker all versions. The web server can be compromised by ... |
| CVE-2020-36768 | CRITICAL | 9.8 | 0.8% | Dec 3, 2023 | A vulnerability was found in rl-institut NESP2 Initial Release/1.0. It has been classified as critical. Affected is an u... |
| CVE-2020-36706 | CRITICAL | 9.8 | 1.8% | Oct 20, 2023 | The Simple:Press – WordPress Forum Plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type... |
| CVE-2020-27636 | CRITICAL | 9.1 | 0.9% | Oct 10, 2023 | In Microchip MPLAB Net 3.6.1, TCP ISNs are improperly random. |
| CVE-2020-27635 | CRITICAL | 9.1 | 0.9% | Oct 10, 2023 | In PicoTCP 1.7.0, TCP ISNs are improperly random. |
| CVE-2020-27634 | CRITICAL | 9.1 | 1.7% | Oct 10, 2023 | In Contiki 4.5, TCP ISNs are improperly random. |
| CVE-2020-27633 | CRITICAL | 9.1 | 0.9% | Oct 10, 2023 | In FNET 4.6.3, TCP ISNs are improperly random. |
| CVE-2020-27631 | CRITICAL | 9.8 | 1.1% | Oct 10, 2023 | In Oryx CycloneTCP 1.9.6, TCP ISNs are improperly random. |
| CVE-2020-27630 | CRITICAL | 9.8 | 1.1% | Oct 10, 2023 | In Silicon Labs uC/TCP-IP 3.6.0, TCP ISNs are improperly random. |
| CVE-2020-19559 | CRITICAL | 9.8 | 1.2% | Sep 11, 2023 | An issue in Diebold Aglis XFS for Opteva v.4.1.61.1 allows a remote attacker to execute arbitrary code via a crafted pay... |
| CVE-2020-19320 | CRITICAL | 9.8 | 0.9% | Sep 11, 2023 | Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the curTime parameter on login. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now