2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-37102HIGH8.5Adaware Web Companion 4.9.2159 contains an unquoted service path vulnerability in the WCAssistantService that allows loc...
CVE-2020-37101HIGH8.5VPN Unlimited 6.1 contains an unquoted service path vulnerability that allows local attackers to inject malicious execut...
CVE-2020-37100HIGH8.5Sync Breeze Enterprise 12.4.18 contains an unquoted service path vulnerability that allows local attackers to execute ar...
CVE-2020-37099HIGH8.5Disk Savvy Enterprise 12.3.18 contains an unquoted service path vulnerability in its service configuration that allows l...
CVE-2020-37098HIGH8.5Disk Sorter Enterprise 12.4.16 contains an unquoted service path vulnerability that allows local attackers to execute ar...
CVE-2020-37064HIGH8.5EPSON EasyMP Network Projection 2.81 contains an unquoted service path vulnerability in the EMP_NSWLSV service that allo...
CVE-2020-37063HIGH8.5TFTP Turbo 4.6.1273 contains an unquoted service path vulnerability that allows local attackers to potentially execute a...
CVE-2020-37062HIGH8.5DHCP Turbo 4.61298 contains an unquoted service path vulnerability that allows local attackers to potentially execute ar...
CVE-2020-37061HIGH8.5BOOTP Turbo 2.0.1214 contains an unquoted service path vulnerability that allows local attackers to potentially execute ...
CVE-2020-37055HIGH8.5SpyHunter 4 contains an unquoted service path vulnerability that allows local users to potentially execute arbitrary cod...
CVE-2020-37048HIGH8.5Iskysoft Application Framework Service 2.4.3.241 contains an unquoted service path vulnerability that allows local users...
CVE-2020-37047HIGH8.5Deep Instinct Windows Agent 1.2.29.0 contains an unquoted service path vulnerability in the DeepMgmtService that allows ...
CVE-2020-37045HIGH8.5Veritas NetBackup 7.0 contains an unquoted service path vulnerability in the NetBackup INET Daemon service that allows l...
CVE-2020-37037HIGH8.5Avast SecureLine 5.5.522.0 contains an unquoted service path vulnerability that allows local users to potentially execut...
CVE-2020-37057CRITICAL9.8Online-Exam-System 2015 contains a SQL injection vulnerability in the feedback module that allows attackers to manipulat...
CVE-2020-37056CRITICAL9.8Crystal Shard http-protection 0.2.0 contains an IP spoofing vulnerability that allows attackers to bypass protection mid...
CVE-2020-37054HIGH8.8Navigate CMS 2.8.7 contains a cross-site request forgery vulnerability that allows attackers to upload malicious extensi...
CVE-2020-37053MEDIUM6.5Navigate CMS 2.8.7 contains an authenticated SQL injection vulnerability that allows attackers to leak database informat...
CVE-2020-37052CRITICAL9.8AirControl 1.4.2 contains a pre-authentication remote code execution vulnerability that allows unauthenticated attackers...
CVE-2020-37051MEDIUM5.3Online-Exam-System 2015 contains a time-based blind SQL injection vulnerability in the feedback form that allows attacke...
CVE-2020-37050CRITICAL9.8Quick Player 1.3 contains a buffer overflow vulnerability that allows attackers to execute arbitrary code by crafting a ...
CVE-2020-37049HIGH8.4Frigate 3.36.0.9 contains a local buffer overflow vulnerability in the Command Line input field that allows attackers to...
CVE-2020-37046MEDIUM5.3Sistem Informasi Pengumuman Kelulusan Online 1.0 contains a cross-site request forgery vulnerability that allows attacke...
CVE-2020-37044MEDIUM6.1OpenCTI 3.3.1 is vulnerable to a reflected cross-site scripting (XSS) attack via the /graphql endpoint. An attacker can ...
CVE-2020-37043CRITICAL9.810-Strike Bandwidth Monitor 3.9 contains a buffer overflow vulnerability that allows attackers to bypass SafeSEH, ASLR, ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now