2020 CVE Vulnerabilities

21,060 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9695HIGH7.8Acrobat Reader versions 2020.009.20074, 2020.001.30002, 2017.011.30171, 2015.006.30523 and earlier are affected by an ou...
CVE-2020-37255HIGH8.7WordPress Time Capsule Plugin 1.21.16 contains an authentication bypass vulnerability that allows unauthenticated attack...
CVE-2020-37254HIGH8.5Wondershare PDFelement 5.2.9 contains a privilege escalation vulnerability due to an unquoted service path in the WsAppS...
CVE-2020-37253HIGH8.5Winstep 18.06.0096 contains an unquoted service path vulnerability in the Winstep Xtreme Service that allows local attac...
CVE-2020-37252HIGH8.5Realtek Audio Service 1.0.0.55 contains an unquoted service path vulnerability in RtkAudioService64.exe that allows loca...
CVE-2020-37251HIGH8.5RealTimes Desktop Service 18.1.4 contains an unquoted service path vulnerability in the rpdsvc.exe binary that allows lo...
CVE-2020-37250HIGH8.5TFTP Broadband 4.3.0.1465 contains an unquoted service path vulnerability in the tftpt.exe service binary that allows lo...
CVE-2020-37247HIGH8.5Kite 4.2.0.1 U1 contains an unquoted service path vulnerability in the KiteService Windows service that allows local att...
CVE-2020-37245HIGH8.7Supsystic Digital Publications 1.6.9 contains a path traversal vulnerability in the Folder input field that allows attac...
CVE-2020-37244HIGH8.8Supsystic Membership 1.4.7 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbi...
CVE-2020-37243HIGH8.8Supsystic Pricing Table 1.8.7 contains an SQL injection vulnerability in the 'sidx' GET parameter that allows unauthenti...
CVE-2020-37242HIGH8.8Supsystic Ultimate Maps 1.1.12 contains an SQL injection vulnerability that allows unauthenticated attackers to execute ...
CVE-2020-37232HIGH8.5Advanced System Care Service 13.0.0.157 contains an unquoted service path vulnerability in the AdvancedSystemCareService...
CVE-2020-37231HIGH8.5Privacy Drive 3.17.0 contains an unquoted service path vulnerability in the pdsvc.exe service binary that allows local a...
CVE-2020-37230HIGH8.5Syncplify.me Server! 5.0.37 contains an unquoted service path vulnerability in the SMWebRestServicev5 service that allow...
CVE-2020-37229HIGH8.5OKI sPSV Port Manager 1.0.41 contains an unquoted service path vulnerability in the sPSVOpLclSrv service that allows loc...
CVE-2020-37227HIGH8.7HS Brand Logo Slider 2.1 contains an unrestricted file upload vulnerability that allows authenticated users to bypass cl...
CVE-2020-37226HIGH7.1Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu...
CVE-2020-37224HIGH7.1Joomla J2 JOBS 1.3.0 contains an authenticated SQL injection vulnerability that allows authenticated attackers to manipu...
CVE-2020-37223HIGH8.5IObit Uninstaller 9.5.0.15 contains an unquoted service path vulnerability in the IObitUnSvr service that allows local a...
CVE-2020-37221HIGH8.6Atomic Alarm Clock 6.3 contains a stack overflow vulnerability that allows local attackers to execute arbitrary code by ...
CVE-2020-37220HIGH8.7Huawei HG630 V2 router contains an authentication bypass vulnerability that allows unauthenticated attackers to obtain a...
CVE-2020-37219HIGH8.7Joomla com_fabrik 3.9.11 contains a directory traversal vulnerability that allows unauthenticated attackers to list arbi...
CVE-2020-37218HIGH8.8Joomla com_hdwplayer 4.2 contains an SQL injection vulnerability in the search.php file that allows unauthenticated atta...
CVE-2020-37216HIGH8.7Hirschmann HiOS devices versions prior to 08.1.00 and 07.1.01 contain a denial of service vulnerability in the EtherNet...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now