4.8
    Medium

    CVE-2020-25498

    Last Modified: 21 Nov 2024

    Cross Site Scripting (XSS) vulnerability in Beetel router 777VR1 can be exploited via the NTP server name in System Time and "Keyword" in URL Filter.

    Published:6 Jan 2021
    6.1
    Medium

    CVE-2020-25495

    Last Modified: 21 Dec 2020

    A reflected Cross-site scripting (XSS) vulnerability in Xinuo (formerly SCO) Openserver version 5 and 6 allows remote attackers to inject arbitrary web script or HTML tag via the parameter 'section'.

    Source:Ramikan
    Published:18 Dec 2020
    9.8
    Critical

    CVE-2020-25494

    Last Modified: 21 Dec 2020

    Xinuos (formerly SCO) Openserver v5 and v6 allows attackers to execute arbitrary commands via shell metacharacters in outputform or toclevels parameter to cgi-bin/printbook.

    Source:Ramikan
    Published:18 Dec 2020
    Unknown

    CVE-2020-25488

    https://github.com/Ko-kn3t/CVE-2020-25488

    7.8
    High

    CVE-2020-25487

    Last Modified: 21 Nov 2024

    PHPGURUKUL Zoo Management System Using PHP and MySQL version 1.0 is affected by: SQL Injection via zms/animal-detail.php.

    Published:22 Sept 2020
    Unknown

    CVE-2020-25478

    https://github.com/santokum/CVE-2020-25478--ASUS-RT-AC87U-TFTP-is-vulnerable-to-Denial-of-Service-DoS-attack

    8.8
    High

    CVE-2020-25453

    Last Modified: 21 Sept 2020

    An issue was discovered in BlackCat CMS before 1.4. There is a CSRF vulnerability (bypass csrf_token) that allows remote arbitrary code execution.

    Source:Noth
    Published:15 Sept 2020
    7.8
    High

    CVE-2020-25399

    Last Modified: 21 Nov 2024

    Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malicious file in the chat.

    Published:5 Nov 2020
    8.8
    High

    CVE-2020-25398

    Last Modified: 21 Nov 2024

    CSV Injection exists in InterMind iMind Server through 3.13.65 via the csv export functionality.

    Published:5 Nov 2020
    9.8
    Critical

    CVE-2020-25279

    Last Modified: 21 Nov 2024

    An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos chipsets) software. The baseband component has a buffer overflow via an abnormal SETUP message, leading to execution of arbitrary code. The Samsung ID is SVE-2020-18098 (September 2020).

    Published:11 Sept 2020
    9.8
    Critical

    CVE-2020-25273

    Last Modified: 21 Nov 2024

    In SourceCodester Online Bus Booking System 1.0, there is Authentication bypass on the Admin Login screen in admin.php via username or password SQL injection.

    Published:8 Oct 2020
    6.1
    Medium

    CVE-2020-25272

    Last Modified: 21 Nov 2024

    In SourceCodester Online Bus Booking System 1.0, there is XSS through the name parameter in book_now.php.

    Published:8 Oct 2020
    5.4
    Medium

    CVE-2020-25271

    Last Modified: 21 Nov 2024

    PHPGurukul hospital-management-system-in-php 4.0 allows XSS via admin/patient-search.php, doctor/search.php, book-appointment.php, doctor/appointment-history.php, or admin/appointment-history.php.

    Published:8 Oct 2020
    5.4
    Medium

    CVE-2020-25270

    Last Modified: 19 Oct 2020

    PHPGurukul hostel-management-system 2.1 allows XSS via Guardian Name, Guardian Relation, Guardian Contact no, Address, or City.

    Source:Kokn3t
    Published:8 Oct 2020
    6.5
    Medium

    CVE-2020-25265

    Last Modified: 21 Nov 2024

    AppImage libappimage before 1.0.3 allows attackers to trigger an overwrite of a system-installed .desktop file by providing a .desktop file that contains Name= with path components.

    Published:2 Dec 2020
    9.8
    Critical

    CVE-2020-25223

    Last Modified: 7 Nov 2025

    A remote code execution vulnerability exists in the WebAdmin of Sophos SG UTM before v9.705 MR5, v9.607 MR7, and v9.511 MR11

    Published:25 Sept 2020
    10
    Critical

    CVE-2020-25213

    Last Modified: 18 Mar 2021

    The File Manager (wp-file-manager) plugin before 6.9 for WordPress allows remote attackers to upload and execute arbitrary PHP code because it renames an unsafe example elFinder connector file to have the .php extension. This, for example, allows attackers to run the elFinder upload (or mkfile and put) command to write PHP code into the wp-content/plugins/wp-file-manager/lib/files/ directory. This was exploited in the wild in August and September 2020.

    Source:Mansoor R
    Published:9 Sept 2020
    5.3
    Medium

    CVE-2020-25200

    Last Modified: 21 Nov 2024

    Pritunl 1.29.2145.25 allows attackers to enumerate valid VPN usernames via a series of /auth/session login attempts. Initially, the server will return error 401. However, if the username is valid, then after 20 login attempts, the server will start responding with error 400. Invalid usernames will receive error 401 indefinitely. Note: This has been disputed by the vendor as not a vulnerability. They argue that this is an intended design

    Published:1 Oct 2020
    8.8
    High

    CVE-2020-25134

    Last Modified: 21 Nov 2024

    An issue was discovered in Observium Professional, Enterprise & Community 20.8.10631. It is vulnerable to directory traversal and local file inclusion due to the fact that there is an unrestricted possibility of loading any file with an inc.php extension. Inclusion of other files (even though limited to the mentioned extension) can lead to Remote Code Execution. This can occur via /settings/?format=../ URIs to pages/settings.inc.php.

    Published:25 Sept 2020
    7.5
    High

    CVE-2020-25078

    Last Modified: 7 Nov 2025

    An issue was discovered on D-Link DCS-2530L before 1.06.01 Hotfix and DCS-2670L through 2.02 devices. The unauthenticated /config/getuser endpoint allows for remote administrator password disclosure.

    Published:2 Sept 2020
    7.5
    High

    CVE-2020-25068

    Last Modified: 21 Nov 2024

    Setelsa Conacwin v3.7.1.2 is vulnerable to a local file inclusion vulnerability. This vulnerability allows a remote unauthenticated attacker to read internal files on the server via an http:IP:PORT/../../path/file_to_disclose Directory Traversal URI. NOTE: The manufacturer indicated that the affected version does not exist. Furthermore, they indicated that they detected this problem in an internal audit more than 3 years ago and fixed it in 2017.

    Published:3 Sept 2020
    7.2
    High

    CVE-2020-25042

    Last Modified: 21 Nov 2024

    An arbitrary file upload issue exists in Mara CMS 7.5. In order to exploit this, an attacker must have a valid authenticated (admin/manager) session and make a codebase/dir.php?type=filenew request to upload PHP code to codebase/handler.php.

    Published:3 Sept 2020
    6.5
    Medium

    CVE-2020-25015

    Last Modified: 9 Nov 2020

    A specific router allows changing the Wi-Fi password remotely. Genexis Platinum 4410 V2-1.28, a compact router generally used at homes and offices was found to be vulnerable to Broken Access Control and CSRF which could be combined to remotely change the WIFI access point’s password.

    Source:Jinson Varghese Behanan
    Published:16 Sept 2020
    8.8
    High

    CVE-2020-24972

    Last Modified: 21 Nov 2024

    The Kleopatra component before 3.1.12 (and before 20.07.80) for GnuPG allows remote attackers to execute arbitrary code because openpgp4fpr: URLs are supported without safe handling of command-line options. The Qt platformpluginpath command-line option can be used to load an arbitrary DLL.

    Published:29 Aug 2020
    5.4
    Medium

    CVE-2020-24963

    Last Modified: 1 Dec 2020

    An Authenticated Persistent XSS vulnerability was discovered in the Best Support System, tested version v3.0.4.

    Source:Ex.Mi
    Published:4 Sept 2020
    7.8
    High

    CVE-2020-24955

    Last Modified: 21 Nov 2024

    SUPERAntiSyware Professional X Trial 10.0.1206 is vulnerable to local privilege escalation because it allows unprivileged users to restore a malicious DLL from quarantine into the system32 folder via an NTFS directory junction, as demonstrated by a crafted ualapi.dll file that is detected as malware.

    Published:1 Sept 2020
    8.8
    High

    CVE-2020-24949

    Last Modified: 28 Jun 2021

    Privilege escalation in PHP-Fusion 9.03.50 downloads/downloads.php allows an authenticated user (not admin) to send a crafted request to the server and perform remote command execution (RCE).

    Source:g0ldm45k
    Published:3 Sept 2020
    9.8
    Critical

    CVE-2020-24913

    Last Modified: 4 Jul 2026

    A SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an unauthenticated attacker to access the database by injecting SQL code via a crafted POST request.

    Published:4 Mar 2021
    9.8
    Critical

    CVE-2020-24881

    Last Modified: 19 Jan 2021

    SSRF exists in osTicket before 1.14.3, where an attacker can add malicious file to server or perform port scanning.

    Source:Talat Mehmood
    Published:2 Nov 2020
    6.5
    Medium

    CVE-2020-24815

    Last Modified: 21 Nov 2024

    A Server-Side Request Forgery (SSRF) affecting the PDF generation in MicroStrategy 10.4, 2019 before Update 6, and 2020 before Update 2 allows authenticated users to access the content of internal network resources or leak files from the local system via HTML containers embedded in a dossier/dashboard document. NOTE: 10.4., no fix will be released as version will reach end-of-life on 31/12/2020.

    Published:24 Nov 2020
    8.1
    High

    CVE-2020-24750

    Last Modified: 25 Aug 2026

    FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, related to com.pastdev.httpcomponents.configuration.JndiConfiguration.

    Published:17 Sept 2020
    6.5
    Medium

    CVE-2020-24656

    Last Modified: 21 Nov 2024

    Maltego before 4.2.12 allows XXE attacks.

    Published:26 Aug 2020
    8.1
    High

    CVE-2020-24616

    Last Modified: 25 Aug 2026

    FasterXML jackson-databind 2.x before 2.9.10.6 mishandles the interaction between serialization gadgets and typing, related to br.com.anteros.dbcp.AnterosDBCPDataSource (aka Anteros-DBCP).

    Published:25 Aug 2020
    6.1
    Medium

    CVE-2020-24609

    Last Modified: 26 Aug 2020

    TechKshetra Info Solutions Pvt. Ltd Savsoft Quiz 5.5 and earlier has XSS which can result in an attacker injecting the XSS payload in the User Registration section and each time the admin visits the manage user section from the admin panel, the XSS triggers and the attacker can steal the cookie via crafted payload.

    Source:Mayur Parmar
    Published:25 Aug 2020
    Unknown

    CVE-2020-24597

    https://github.com/HoangKien1020/CVE-2020-24597

    3.5
    Low

    CVE-2020-24586

    Last Modified: 21 Nov 2024

    The 802.11 standard that underpins Wi-Fi Protected Access (WPA, WPA2, and WPA3) and Wired Equivalent Privacy (WEP) doesn't require that received fragments be cleared from memory after (re)connecting to a network. Under the right circumstances, when another device sends fragmented frames encrypted using WEP, CCMP, or GCMP, this can be abused to inject arbitrary network packets and/or exfiltrate user data.

    Published:11 May 2021
    8.8
    High

    CVE-2020-24572

    Last Modified: 21 Nov 2024

    An issue was discovered in includes/webconsole.php in RaspAP 2.5. With authenticated access, an attacker can use a misconfigured (and virtually unrestricted) web console to attack the underlying OS (Raspberry Pi) running this software, and execute commands on the system (including ones for uploading of files and execution of code).

    Published:24 Aug 2020
    6.5
    Medium

    CVE-2020-24490

    Last Modified: 21 Nov 2024

    Improper buffer restrictions in BlueZ may allow an unauthenticated user to potentially enable denial of service via adjacent access. This affects all Linux kernel versions that support BlueZ.

    Published:14 Oct 2020
    5.3
    Medium

    CVE-2020-24370

    Last Modified: 5 May 2025

    ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

    Published:24 Jul 2020
    8.8
    High

    CVE-2020-24365

    Last Modified: 19 Nov 2020

    An issue was discovered on Gemtek WRTM-127ACN 01.01.02.141 and WRTM-127x9 01.01.02.127 devices. The Monitor Diagnostic network page allows an authenticated attacker to execute a command directly on the target machine. Commands are executed as the root user (uid 0). (Even if a login is required, most routers are left with default credentials.)

    Source:Gabriele Zuddas
    Published:24 Sept 2020
    8.8
    High

    CVE-2020-24363

    Last Modified: 23 Nov 2020

    TP-Link TL-WA855RE V5 20200415-rel37464 devices allow an unauthenticated attacker (on the same network) to submit a TDDP_RESET POST request for a factory reset and reboot. The attacker can then obtain incorrect access control by setting a new administrative password.

    Source:malwrforensics
    Published:31 Aug 2020
    7.5
    High

    CVE-2020-24227

    Last Modified: 21 Nov 2024

    Playground Sessions v2.5.582 (and earlier) for Windows, stores the user credentials in plain text allowing anyone with access to UserProfiles.sol to extract the email and password.

    Published:23 Nov 2020
    6.1
    Medium

    CVE-2020-24223

    Last Modified: 31 Aug 2020

    Mara CMS 7.5 allows cross-site scripting (XSS) in contact.php via the theme or pagetheme parameters.

    Source:George Tsimpidas
    Published:30 Aug 2020
    7.5
    High

    CVE-2020-24219

    Last Modified: 19 Oct 2020

    An issue was discovered on URayTech IPTV/H.264/H.265 video encoders through 1.97. Attackers can send crafted unauthenticated HTTP requests to exploit path traversal and pattern-matching programming flaws, and retrieve any file from the device's file system, including the configuration file with the cleartext administrative password.

    Source:Alexei Kojenov
    Published:6 Oct 2020
    9.8
    Critical

    CVE-2020-24217

    Last Modified: 19 Oct 2020

    An issue was discovered in the box application on HiSilicon based IPTV/H.264/H.265 video encoders. The file-upload endpoint does not enforce authentication. Attackers can send an unauthenticated HTTP request to upload a custom firmware component, possibly in conjunction with command injection, to achieve arbitrary code execution.

    Source:Alexei Kojenov
    Published:6 Oct 2020
    9.8
    Critical

    CVE-2020-24215

    Last Modified: 19 Oct 2020

    An issue was discovered in the box application on HiSilicon based IPTV/H.264/H.265 video encoders. Attackers can use hard-coded credentials in HTTP requests to perform any administrative task on the device including retrieving the device's configuration (with the cleartext admin password), and uploading a custom firmware update, to ultimately achieve arbitrary code execution.

    Source:Alexei Kojenov
    Published:6 Oct 2020
    9.8
    Critical

    CVE-2020-24214

    Last Modified: 19 Oct 2020

    An issue was discovered in the box application on HiSilicon based IPTV/H.264/H.265 video encoders. Attackers can send a crafted unauthenticated RTSP request to cause a buffer overflow and application crash. The device will not be able to perform its main purpose of video encoding and streaming for up to a minute, until it automatically reboots. Attackers can send malicious requests once a minute, effectively disabling the device.

    Source:Alexei Kojenov
    Published:6 Oct 2020
    10
    Critical

    CVE-2020-24186

    Last Modified: 7 Jun 2021

    A Remote Code Execution vulnerability exists in the gVectors wpDiscuz plugin 7.0 through 7.0.4 for WordPress, which allows unauthenticated users to upload any type of file, including PHP files via the wmuUploadFiles AJAX action.

    Source:UnD3sc0n0c1d0
    Published:24 Aug 2020
    9.1
    Critical

    CVE-2020-24148

    Last Modified: 21 Nov 2024

    Server-side request forgery (SSRF) in the Import XML and RSS Feeds (import-xml-feed) plugin 2.0.1 for WordPress via the data parameter in a moove_read_xml action.

    Published:7 Jul 2021
    5.5
    Medium

    CVE-2020-24089

    Last Modified: 21 Nov 2024

    An issue was discovered in ImfHpRegFilter.sys in IOBit Malware Fighter version 8.0.2, allows local attackers to cause a denial of service (DoS).

    Published:19 Sept 2023