2020 CVE Vulnerabilities
21,075 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-10235 | HIGH | 8.8 | 1.7% | Mar 9, 2020 | An issue was discovered in Froxlor before 0.10.14. Remote attackers with access to the installation routine could have e... |
| CVE-2020-10175 | — | — | — | Mar 9, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2020-4217 | HIGH | 7.5 | 1.3% | Mar 9, 2020 | The IBM Spectrum Scale 4.2 and 5.0 file system component is affected by a denial of service security vulnerability. An a... |
| CVE-2020-9282 | MEDIUM | 6.5 | 0.9% | Mar 9, 2020 | In Mahara 18.10 before 18.10.5, 19.04 before 19.04.4, and 19.10 before 19.10.2, certain personal information is discover... |
| CVE-2020-10233 | CRITICAL | 9.1 | 2.4% | Mar 9, 2020 | In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a heap-based buffer over-read in ntfs_dinode_lookup in fs... |
| CVE-2020-10232 | CRITICAL | 9.8 | 2.4% | Mar 9, 2020 | In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a stack buffer overflow vulnerability in the YAFFS file t... |
| CVE-2020-10225 | CRITICAL | 9.8 | 4.3% | Mar 8, 2020 | An unauthenticated file upload vulnerability has been identified in admin/gallery.php in PHPGurukul Job Portal 1.0. The ... |
| CVE-2020-10224 | CRITICAL | 9.8 | 5.5% | Mar 8, 2020 | An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. T... |
| CVE-2020-10223 | HIGH | 8.1 | 2.4% | Mar 8, 2020 | npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to JBIG2Decode CNxJBIG2DecodeStream Heap Corruption at npdf!CAPPD... |
| CVE-2020-10222 | HIGH | 8.1 | 2.4% | Mar 8, 2020 | npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to Heap Corruption at npdf!nitro::get_property+2381 via a crafted... |
| CVE-2020-10221 | HIGH | 8.8 | 36.8% | Mar 8, 2020 | lib/ajaxHandlers/ajaxAddTemplate.php in rConfig through 3.94 allows remote attackers to execute arbitrary OS commands vi... |
| CVE-2020-10220 | CRITICAL | 9.8 | 99.7% | Mar 7, 2020 | An issue was discovered in rConfig through 3.9.4. The web interface is prone to a SQL injection via the commands.inc.php... |
| CVE-2020-9470 | HIGH | 7.8 | 0.6% | Mar 7, 2020 | An issue was discovered in Wing FTP Server 6.2.5 before February 2020. Due to insecure permissions when handling session... |
| CVE-2020-9281 | MEDIUM | 6.1 | 4.3% | Mar 7, 2020 | A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attacke... |
| CVE-2020-8439 | MEDIUM | 6.5 | 1.6% | Mar 7, 2020 | Monstra CMS through 3.0.4 allows remote authenticated users to take over arbitrary user accounts via a modified login pa... |
| CVE-2020-10216 | HIGH | 8.8 | 5.6% | Mar 7, 2020 | An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands ... |
| CVE-2020-10215 | HIGH | 8.8 | 5.9% | Mar 7, 2020 | An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands ... |
| CVE-2020-10214 | HIGH | 8.8 | 18.3% | Mar 7, 2020 | An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is a stack-based buffer overflow in the httpd binary... |
| CVE-2020-10213 | HIGH | 8.8 | 5.0% | Mar 7, 2020 | An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands ... |
| CVE-2020-8635 | HIGH | 7.8 | 0.8% | Mar 7, 2020 | Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on installation directories and configura... |
| CVE-2020-8634 | HIGH | 7.8 | 0.4% | Mar 7, 2020 | Wing FTP Server v6.2.3 for Linux, macOS, and Solaris sets insecure permissions on files modified within the HTTP file ma... |
| CVE-2020-10212 | CRITICAL | 9.8 | 1.5% | Mar 7, 2020 | upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking... |
| CVE-2020-10020 | — | — | — | Mar 7, 2020 | Rejected reason: Number assigned to issue that does not qualify for a CVE |
| CVE-2020-5328 | CRITICAL | 9.8 | 1.4% | Mar 6, 2020 | Dell EMC Isilon OneFS versions prior to 8.2.0 contain an unauthorized access vulnerability due to a lack of thorough aut... |
| CVE-2020-5327 | CRITICAL | 9.8 | 3.6% | Mar 6, 2020 | Dell Security Management Server versions prior to 10.2.10 contain a Java RMI Deserialization of Untrusted Data vulnerabi... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now