2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-27243 | HIGH | 8.8 | 0.8% | May 11, 2021 | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The... |
| CVE-2020-27242 | HIGH | 8.8 | 0.8% | May 11, 2021 | An exploitable SQL injection vulnerability exists in ‘listImmoLabels.jsp’ page of OpenClinic GA 5.173.3 application. The... |
| CVE-2020-23575 | HIGH | 7.5 | 36.8% | May 10, 2021 | A directory traversal vulnerability exists in Kyocera Printer d-COPIA253MF plus. Successful exploitation of this vulnera... |
| CVE-2020-28600 | HIGH | 7.8 | 1.3% | May 10, 2021 | An out-of-bounds write vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12... |
| CVE-2020-27232 | HIGH | 8.8 | 1.0% | May 10, 2021 | An exploitable SQL injection vulnerability exists in ‘manageServiceStocks.jsp’ page of OpenClinic GA 5.173.3. A speciall... |
| CVE-2020-27231 | HIGH | 8.8 | 0.8% | May 10, 2021 | A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 applicat... |
| CVE-2020-27230 | HIGH | 8.8 | 0.8% | May 10, 2021 | A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 applicat... |
| CVE-2020-27229 | HIGH | 8.8 | 0.8% | May 10, 2021 | A number of exploitable SQL injection vulnerabilities exists in ‘patientslist.do’ page of OpenClinic GA 5.173.3 applicat... |
| CVE-2020-27226 | HIGH | 8.8 | 1.0% | May 10, 2021 | An exploitable SQL injection vulnerability exists in ‘quickFile.jsp’ page of OpenClinic GA 5.173.3. A specially crafted ... |
| CVE-2020-19199 | HIGH | 8.8 | 0.9% | May 10, 2021 | A Cross Site Request Forgery (CSRF) vulnerability exists in PHPOK 5.2.060 via admin.php?c=admin&f=save, which could let ... |
| CVE-2020-22809 | HIGH | 7.8 | 0.4% | May 10, 2021 | In Windscribe v1.83 Build 20, 'WindscribeService' has an Unquoted Service Path that facilitates privilege escalation. |
| CVE-2020-36128 | HIGH | 8.2 | 1.2% | May 7, 2021 | Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by a token spoofing vulnerability. Each payment term... |
| CVE-2020-36126 | HIGH | 8.1 | 1.4% | May 7, 2021 | Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by incorrect access control that can lead to remote ... |
| CVE-2020-36125 | HIGH | 7.1 | 0.9% | May 7, 2021 | Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by incorrect access control where password revalidat... |
| CVE-2020-11295 | HIGH | 7.8 | 0.1% | May 7, 2021 | Use after free in camera If the threadmanager is being cleaned up while the worker thread is processing objects in Snapd... |
| CVE-2020-11294 | HIGH | 7.8 | 0.1% | May 7, 2021 | Out of bound write in logger due to prefix size is not validated while prepended to logging string in Snapdragon Auto, S... |
| CVE-2020-11289 | HIGH | 7.8 | 0.2% | May 7, 2021 | Out of bound write can occur in TZ command handler due to lack of validation of command ID in Snapdragon Auto, Snapdrago... |
| CVE-2020-11288 | HIGH | 7.8 | 0.2% | May 7, 2021 | Out of bound write can occur in playready while processing command due to lack of input validation in Snapdragon Auto, S... |
| CVE-2020-11284 | HIGH | 7.8 | 0.2% | May 7, 2021 | Locked memory can be unlocked and modified by non secure boot loader through improper system call sequence making the me... |
| CVE-2020-11274 | HIGH | 7.5 | 0.7% | May 7, 2021 | Denial of service in MODEM due to assert to the invalid configuration in Snapdragon Auto, Snapdragon Compute, Snapdragon... |
| CVE-2020-11273 | HIGH | 7.5 | 0.7% | May 7, 2021 | Histogram type KPI was teardown with the assumption of the existence of histogram binning info and will lead to null poi... |
| CVE-2020-11268 | HIGH | 7.5 | 0.7% | May 7, 2021 | Potential UE reset while decoding a crafted Sib1 or SIB1 that schedules unsupported SIBs and can lead to denial of servi... |
| CVE-2020-23264 | HIGH | 8.8 | 0.6% | May 6, 2021 | Cross-site request forgery (CSRF) in Fork-CMS before 5.8.2 allow remote attackers to hijack the authentication of logged... |
| CVE-2020-28198 | HIGH | 7 | 0.4% | May 6, 2021 | The 'id' parameter of IBM Tivoli Storage Manager Version 5 Release 2 (Command Line Administrative Interface, dsmadmc.exe... |
| CVE-2020-18888 | HIGH | 7.5 | 0.8% | May 6, 2021 | Arbitrary File Deletion vulnerability in puppyCMS v5.1 allows remote malicious attackers to delete the file/folder via /... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now