2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-26801 | MEDIUM | 5.4 | 0.7% | Jun 25, 2021 | A stored cross-site scripting (XSS) vulnerability was discovered in /Forms/device_vars_1 on TrippLite SU2200RTXL2Ua with... |
| CVE-2020-17753 | MEDIUM | 6.5 | 1.5% | Jun 24, 2021 | An issue was discovered in function addMeByRC in the smart contract implementation for RC, an Ethereum token, allows att... |
| CVE-2020-4885 | MEDIUM | 4.7 | 0.3% | Jun 24, 2021 | IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow a local user to access and change the... |
| CVE-2020-18671 | MEDIUM | 5.4 | 0.8% | Jun 24, 2021 | Cross Site Scripting (XSS) vulnerability in Roundcube Mail <=1.4.4 via smtp config in /installer/test.php. |
| CVE-2020-18670 | MEDIUM | 5.4 | 0.9% | Jun 24, 2021 | Cross Site Scripting (XSS) vulneraibility in Roundcube mail .4.4 via database host and user in /installer/test.php. |
| CVE-2020-18668 | MEDIUM | 5.4 | 0.8% | Jun 24, 2021 | Cross Site Scripting (XSS) vulnerabililty in WebPort <=1.19.1 via the description parameter to script/listcalls. |
| CVE-2020-21783 | MEDIUM | 6.1 | 0.7% | Jun 24, 2021 | In IBOS 4.5.4 the email function has a cross site scripting (XSS) vulnerability in emailbody[content] parameter. |
| CVE-2020-18665 | MEDIUM | 5.3 | 1.7% | Jun 24, 2021 | Directory Traversal vulnerability in WebPort <=1.19.1 in tags of system settings. |
| CVE-2020-18664 | MEDIUM | 5.4 | 0.7% | Jun 24, 2021 | Cross Site Scripting (XSS) vulnerability in WebPort <=1.19.1via the connection name parameter in type-conn. |
| CVE-2020-18663 | MEDIUM | 6.1 | 1.1% | Jun 24, 2021 | Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the act parameter in bbs/move_update.php. |
| CVE-2020-21788 | MEDIUM | 4.3 | 0.7% | Jun 24, 2021 | In CRMEB 3.1.0+ strict domain name filtering leads to SSRF(Server-Side Request Forgery). The vulnerable code is in file ... |
| CVE-2020-18661 | MEDIUM | 6.1 | 1.1% | Jun 24, 2021 | Cross Site Scripting (XSS) vulnerability in gnuboard5 <=v5.3.2.8 via the url parameter to bbs/login.php. |
| CVE-2020-28097 | MEDIUM | 5.9 | 0.5% | Jun 24, 2021 | The vgacon subsystem in the Linux kernel before 5.8.10 mishandles software scrollback. There is a vgacon_scrolldelta out... |
| CVE-2020-18660 | MEDIUM | 6.1 | 1.3% | Jun 23, 2021 | GetSimpleCMS <=3.3.15 has an open redirect in admin/changedata.php via the redirect function to the url parameter. |
| CVE-2020-23962 | MEDIUM | 6.1 | 0.7% | Jun 23, 2021 | A cross site scripting (XSS) vulnerability in Catfish CMS 4.9.90 allows attackers to execute arbitrary web scripts or HT... |
| CVE-2020-18659 | MEDIUM | 6.1 | 1.3% | Jun 23, 2021 | Cross Site Scripting vulnerability in GetSimpleCMS <=3.3.15 via the (1) sitename, (2) username, and (3) email parameters... |
| CVE-2020-18658 | MEDIUM | 6.1 | 1.4% | Jun 23, 2021 | Cross Site Scriptiong (XSS) vulnerability in GetSimpleCMS <=3.3.15 via the timezone parameter to settings.php. |
| CVE-2020-18657 | MEDIUM | 6.1 | 1.4% | Jun 23, 2021 | Cross Site Scripting (XSS) vulnerability in GetSimpleCMS <= 3.3.15 in admin/changedata.php via the redirect_url paramete... |
| CVE-2020-20391 | MEDIUM | 5.4 | 0.6% | Jun 23, 2021 | Cross Site Scripting vulnerability in GetSimpleCMS 3.4.0a in admin/snippets.php via (1) Add Snippet and (2) Save snippet... |
| CVE-2020-20389 | MEDIUM | 4.8 | 0.6% | Jun 23, 2021 | Cross Site Scripting (XSS) vulnerability in GetSimpleCMS 3.4.0a in admin/edit.php. |
| CVE-2020-18654 | MEDIUM | 6.1 | 1.5% | Jun 22, 2021 | Cross Site Scripting (XSS) in Wuzhi CMS v4.1.0 allows remote attackers to execute arbitrary code via the "Title" paramet... |
| CVE-2020-22167 | MEDIUM | 5.4 | 0.5% | Jun 22, 2021 | PHPGurukul Hospital Management System in PHP v4.0 has a Persistent Cross-Site Scripting vulnerability in \hms\admin\appo... |
| CVE-2020-19511 | MEDIUM | 6.1 | 0.8% | Jun 21, 2021 | Cross Site Scriptiong vulnerability in Typesetter 5.1 via the !1) className and !2) Description fields in index.php/Admi... |
| CVE-2020-21130 | MEDIUM | 6.1 | 0.8% | Jun 21, 2021 | Cross Site Scripting (XSS) vulnerability in HisiPHP 2.0.8 via the group name in addgroup.html. |
| CVE-2020-21517 | MEDIUM | 6.1 | 1.2% | Jun 21, 2021 | Cross Site Scripting (XSS) vulnerability in MetInfo 7.0.0 via the gourl parameter in login.php. |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now