2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-21119CRITICAL9.8SQL Injection vulnerability in Kliqqi-CMS 2.0.2 in admin/admin_update_module_widgets.php in recordIDValue parameter, all...
CVE-2020-19825CRITICAL9.6Cross Site Scripting (XSS) vulnerability in kevinpapst kimai2 1.30.0 in /src/Twig/Runtime/MarkdownExtension.php, allows ...
CVE-2020-36661HIGH7.5A vulnerability was found in Kong lua-multipart 0.5.8-1. It has been declared as problematic. This vulnerability affects...
CVE-2020-36660MEDIUM4.3A vulnerability was found in paxswill EVE Ship Replacement Program 0.12.11. It has been rated as problematic. This issue...
CVE-2020-24307HIGH7.8An issue in mRemoteNG v1.76.20 allows attackers to escalate privileges via a crafted executable file. NOTE: third partie...
CVE-2020-14395Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:...
CVE-2020-20402HIGH7.5Westbrookadmin portfolioCMS v1.05 allows attackers to bypass password validation and access sensitive information via se...
CVE-2020-36659HIGH8.1In Apache::Session::Browseable before 1.3.6, validity of the X.509 certificate is not checked by default when connecting...
CVE-2020-36658HIGH8.1In Apache::Session::LDAP before 0.5, validity of the X.509 certificate is not checked by default when connecting to remo...
CVE-2020-36657HIGH7.8uptimed before 0.4.6-r1 on Gentoo allows local users (with access to the uptimed user account) to gain root privileges b...
CVE-2020-22452CRITICAL9.8SQL Injection vulnerability in function getTableCreationQuery in CreateAddField.php in phpMyAdmin 5.x before 5.2.0 via t...
CVE-2020-22327MEDIUM6.1An issue was discovered in HFish 0.5.1. When a payload is inserted where the name is entered, XSS code is triggered when...
CVE-2020-18331CRITICAL9.1Directory traversal vulnerability in ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN running the firmware version W...
CVE-2020-18330CRITICAL9.1An issue was discovered in the default configuration of ChinaMobile PLC Wireless Router model GPN2.4P21-C-CN running the...
CVE-2020-18329HIGH7.5An issue was discovered in Rehau devices that use a pCOWeb card BIOS v6.27, BOOT v5.00, web version v2.2, allows attacke...
CVE-2020-36655HIGH8.8Yii Yii2 Gii before 2.2.2 allows remote attackers to execute arbitrary code via the Generator.php messageCategory field....
CVE-2020-25502HIGH7.8Cybereason EDR version 19.1.282 and above, 19.2.182 and above, 20.1.343 and above, and 20.2.X and above has a DLL hijack...
CVE-2020-29297CRITICAL9.8Multiple SQL Injection vulnerabilities in tourist5 Online-food-ordering-system 1.0.
CVE-2020-23256CRITICAL9.8An issue was discovered in Electerm 1.3.22, allows attackers to execute arbitrary code via unverified request to electer...
CVE-2020-22662HIGH7.5In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...
CVE-2020-22661MEDIUM6.5In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...
CVE-2020-22660HIGH7.5In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...
CVE-2020-22659HIGH7.5In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...
CVE-2020-22658CRITICAL9.8In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...
CVE-2020-22657CRITICAL9.1In Ruckus R310 10.5.1.0.199, Ruckus R500 10.5.1.0.199, Ruckus R600 10.5.1.0.199, Ruckus T300 10.5.1.0.199, Ruckus T301n ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now