2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-37080 | CRITICAL | 9.8 | 0.3% | Feb 3, 2026 | webTareas 2.0.p8 contains a file deletion vulnerability in the print_layout.php administration component that allows aut... |
| CVE-2020-37078 | HIGH | 8.8 | 0.3% | Feb 3, 2026 | i-doit Open Source CMDB 1.14.1 contains a file deletion vulnerability in the import module that allows authenticated att... |
| CVE-2020-37077 | MEDIUM | 6.9 | 0.6% | Feb 3, 2026 | Booked Scheduler 2.7.7 contains a directory traversal vulnerability in the manage_email_templates.php script that allows... |
| CVE-2020-37076 | HIGH | 8.2 | 0.4% | Feb 3, 2026 | Victor CMS version 1.0 contains a SQL injection vulnerability in the 'post' parameter on post.php that allows remote att... |
| CVE-2020-37075 | CRITICAL | 9.8 | 0.5% | Feb 3, 2026 | LanSend 3.2 contains a buffer overflow vulnerability in the Add Computers Wizard file import functionality that allows r... |
| CVE-2020-37074 | CRITICAL | 9.8 | 0.3% | Feb 3, 2026 | Remote Desktop Audit 2.3.0.157 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code ... |
| CVE-2020-37073 | HIGH | 8.8 | 0.5% | Feb 3, 2026 | Victor CMS 1.0 contains an authenticated file upload vulnerability that allows administrators to upload PHP files with a... |
| CVE-2020-37072 | MEDIUM | 6.1 | 0.2% | Feb 3, 2026 | Victor CMS 1.0 contains a stored cross-site scripting vulnerability in the 'comment_author' POST parameter that allows a... |
| CVE-2020-37071 | CRITICAL | 9.8 | 0.6% | Feb 3, 2026 | CraftCMS 3 vCard Plugin 1.0.0 contains a deserialization vulnerability that allows unauthenticated attackers to execute ... |
| CVE-2020-37070 | CRITICAL | 9.8 | 0.5% | Feb 3, 2026 | CloudMe 1.11.2 contains a buffer overflow vulnerability that allows remote attackers to execute arbitrary code through c... |
| CVE-2020-37069 | CRITICAL | 9.8 | 0.6% | Feb 3, 2026 | Konica Minolta FTP Utility 1.0 contains a buffer overflow vulnerability in the NLST command that allows attackers to ove... |
| CVE-2020-37068 | CRITICAL | 9.8 | 0.6% | Feb 3, 2026 | Konica Minolta FTP Utility 1.0 contains a buffer overflow vulnerability in the LIST command that allows attackers to ove... |
| CVE-2020-37067 | CRITICAL | 9.8 | 0.4% | Feb 3, 2026 | Filetto 1.0 FTP server contains a denial of service vulnerability in the FEAT command processing that allows attackers t... |
| CVE-2020-37066 | CRITICAL | 9.8 | 0.4% | Feb 3, 2026 | GoldWave 5.70 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting malic... |
| CVE-2020-37065 | CRITICAL | 9.8 | 0.3% | Feb 3, 2026 | StreamRipper32 version 2.6 contains a buffer overflow vulnerability in the Station/Song Section that allows attackers to... |
| CVE-2020-37116 | HIGH | 8.8 | 0.4% | Feb 3, 2026 | GUnet OpenEclass 1.7.3 includes phpMyAdmin 2.10.0.2 by default, which allows remote logins. Attackers with access to the... |
| CVE-2020-37115 | MEDIUM | 4.9 | 0.3% | Feb 3, 2026 | GUnet OpenEclass 1.7.3 stores user credentials in plaintext, allowing administrators to view all registered users' usern... |
| CVE-2020-37114 | MEDIUM | 6.5 | 0.3% | Feb 3, 2026 | GUnet OpenEclass 1.7.3 allows unauthenticated and authenticated users to access sensitive information, including system ... |
| CVE-2020-37113 | HIGH | 8.8 | 0.8% | Feb 3, 2026 | GUnet OpenEclass 1.7.3 allows authenticated users to bypass file extension restrictions when uploading files. By renamin... |
| CVE-2020-37112 | MEDIUM | 6.5 | 0.3% | Feb 3, 2026 | GUnet OpenEclass 1.7.3 contains multiple SQL injection vulnerabilities that allow authenticated attackers to manipulate ... |
| CVE-2020-37111 | MEDIUM | 6.1 | 0.3% | Feb 3, 2026 | 60CycleCMS 2.5.2 contains a cross-site scripting (XSS) vulnerability in news.php that allows attackers to inject malicio... |
| CVE-2020-37110 | CRITICAL | 9.8 | 0.3% | Feb 3, 2026 | 60CycleCMS 2.5.2 contains an SQL injection vulnerability in news.php and common/lib.php that allows attackers to manipul... |
| CVE-2020-37108 | HIGH | 7.1 | 0.3% | Feb 3, 2026 | PhpIX 2012 Professional contains a SQL injection vulnerability in the 'id' parameter of product_detail.php that allows r... |
| CVE-2020-37105 | HIGH | 7.1 | 0.2% | Feb 3, 2026 | PMB 5.6 contains a SQL injection vulnerability in the administration download script that allows authenticated attackers... |
| CVE-2020-37103 | MEDIUM | 5.4 | 0.3% | Feb 3, 2026 | DotNetNuke 9.5 contains a persistent cross-site scripting vulnerability that allows normal users to upload malicious XML... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now