2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2020-19319CRITICAL9.8Buffer overflow vulnerability in DLINK 619L version B 2.06beta via the FILECODE parameter on login.
CVE-2020-10131CRITICAL9.8SearchBlox before Version 9.2.1 is vulnerable to CSV macro injection in "Featured Results" parameter.
CVE-2020-22612CRITICAL9.8Installer RCE on settings file write in MyBB before 1.8.22.
CVE-2020-18912CRITICAL9.8An issue found in Earcms Ear App v.20181124 allows a remote attacker to execute arbitrary code via the uload/index-uplog...
CVE-2020-24113CRITICAL9.1Directory Traversal vulnerability in Contacts File Upload Interface in Yealink W60B version 77.83.0.85, allows attackers...
CVE-2020-28715CRITICAL9.8An issue was discovered in kdmserver service in LeEco LeTV X43 version V2401RCN02C080080B04121S, allows attackers to exe...
CVE-2020-26037CRITICAL9.8Directory Traversal vulnerability in Server functionalty in Even Balance Punkbuster version 1.902 before 1.905 allows re...
CVE-2020-36082CRITICAL9.8File Upload vulnerability in bloofoxCMS version 0.5.2.1, allows remote attackers to execute arbitrary code and escalate ...
CVE-2020-36034CRITICAL9.8SQL Injection vulnerability in oretnom23 School Faculty Scheduling System version 1.0, allows remote attacker to execute...
CVE-2020-27544CRITICAL9.8An issue was discovered in FoldingAtHome Client Advanced Control GUI before commit 9b619ae64443997948a36dda01b420578de1a...
CVE-2020-27514CRITICAL9.1Directory Traversal vulnerability in delete function in admin.api.TemplateController in ZrLog version 2.1.15, allows rem...
CVE-2020-21662CRITICAL9.8SQL injection vulnerability in yunyecms 2.0.2 allows remote attackers to run arbitrary SQL commands via XFF.
CVE-2020-36762CRITICAL9.8A vulnerability was found in ONS Digital RAS Collection Instrument up to 2.0.27 and classified as critical. Affected by ...
CVE-2020-22336CRITICAL9.8An issue was discovered in pdfcrack 0.17 thru 0.18, allows attackers to execute arbitrary code via a stack overflow in t...
CVE-2020-25969CRITICAL9.8gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest().
CVE-2020-22597CRITICAL9.8An issue in Jerrscript- project Jerryscrip v. 2.3.0 allows a remote attacker to execute arbitrary code via the ecma_buil...
CVE-2020-22153CRITICAL9.8File Upload vulnerability in FUEL-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted .php file...
CVE-2020-22151CRITICAL9.8Permissions vulnerability in Fuel-CMS v.1.4.6 allows a remote attacker to execute arbitrary code via a crafted zip file ...
CVE-2020-18432CRITICAL9.8File Upload vulnerability in SEMCMS PHP 3.7 allows remote attackers to upload arbitrary files and gain escalated privile...
CVE-2020-19902CRITICAL9.8Directory Traversal vulnerability found in Cryptoprof WCMS v.0.3.2 allows a remote attacker to execute arbitrary code vi...
CVE-2020-21489CRITICAL9.8File Upload vulnerability in Feehicms v.2.0.8 allows a remote attacker to execute arbitrary code via the /admin/index.ph...
CVE-2020-21474CRITICAL9.8File Upload vulnerability in NucleusCMS v.3.71 allows a remote attacker to execute arbitrary code via the /nucleus/plugi...
CVE-2020-21174CRITICAL9.8File Upload vulenrability in liufee CMS v.2.0.7.1 allows a remote attacker to execute arbitrary code via the image suffi...
CVE-2020-20735CRITICAL9.8File Upload vulnerability in LJCMS v.4.3.R60321 allows a remote attacker to execute arbitrary code via the ljcms/index.p...
CVE-2020-20718CRITICAL9.8File Upload vulnerability in PluckCMS v.4.7.10 dev versions allows a remote attacker to execute arbitrary code via a cra...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now