2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-7862HIGH8.8A vulnerability in agent program of HelpU remote control solution could allow an authenticated remote attacker to execut...
CVE-2020-36394HIGH7pam_setquota.c in the pam_setquota module before 2020-05-29 for Linux-PAM allows local attackers to set their quota on a...
CVE-2020-22176HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a sensitive information disclosure vulnerability in multiple areas...
CVE-2020-22175HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\admin\betweendates-detailsre...
CVE-2020-22174HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\book-appointment.php. Remote...
CVE-2020-22173HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\edit-profile.php. Remote una...
CVE-2020-22172HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\get_doctor.php. Remote unaut...
CVE-2020-22171HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\registration.php. Remote una...
CVE-2020-22170HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\get_doctor.php. Remote unaut...
CVE-2020-22169HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\appointment-history.php. Rem...
CVE-2020-22168HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\change-emaild.php. Remote un...
CVE-2020-22166HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\forgot-password.php. Remote ...
CVE-2020-22165HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\user-login.php. Remote unaut...
CVE-2020-22164HIGH7.5PHPGurukul Hospital Management System in PHP v4.0 has a SQL injection vulnerability in \hms\check_availability.php. Remo...
CVE-2020-18648HIGH8.8Cross Site Request Forgery (CSRF) in JuQingCMS v1.0 allows remote attackers to gain local privileges via the component "...
CVE-2020-18647HIGH7.5Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/nonec...
CVE-2020-18646HIGH7.5Information Disclosure in NoneCMS v1.3 allows remote attackers to obtain sensitive information via the component "/publi...
CVE-2020-15732HIGH7.5Improper Certificate Validation vulnerability in the Online Threat Prevention module as used in Bitdefender Total Securi...
CVE-2020-27511HIGH7.5An issue was discovered in the stripTags and unescapeHTML components in Prototype 1.7.3 where an attacker can cause a Re...
CVE-2020-22390HIGH8.8Akaunting <= 2.0.9 is vulnerable to CSV injection in the Item name field, export function. Attackers can inject arbitrar...
CVE-2020-20474HIGH7.5White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the default_task_edituser...
CVE-2020-20473HIGH7.5White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the control_task.php, con...
CVE-2020-20471HIGH8.8White Shark System (WSS) 1.3.2 has an unauthorized access vulnerability in default_user_edit.php, remote attackers can e...
CVE-2020-20469HIGH7.5White Shark System (WSS) 1.3.2 has a SQL injection vulnerability. The vulnerability stems from the log_edit.php files fa...
CVE-2020-36388HIGH8.8In CiviCRM before 5.21.3 and 5.22.x through 5.24.x before 5.24.3, users may be able to upload and execute a crafted PHAR...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now