2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-17015 | MEDIUM | 4.3 | 1.9% | Nov 11, 2020 | Microsoft SharePoint Server Spoofing Vulnerability |
| CVE-2020-17013 | MEDIUM | 5.5 | 1.3% | Nov 11, 2020 | Win32k Information Disclosure Vulnerability |
| CVE-2020-17006 | MEDIUM | 5.4 | 1.3% | Nov 11, 2020 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2020-17005 | MEDIUM | 5.4 | 1.3% | Nov 11, 2020 | Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability |
| CVE-2020-17004 | MEDIUM | 5.5 | 1.3% | Nov 11, 2020 | Windows Graphics Component Information Disclosure Vulnerability |
| CVE-2020-17000 | MEDIUM | 5.5 | 1.3% | Nov 11, 2020 | Remote Desktop Protocol Client Information Disclosure Vulnerability |
| CVE-2020-16999 | MEDIUM | 5.5 | 1.3% | Nov 11, 2020 | Windows WalletService Information Disclosure Vulnerability |
| CVE-2020-16993 | MEDIUM | 5.4 | 0.8% | Nov 11, 2020 | Azure Sphere Elevation of Privilege Vulnerability |
| CVE-2020-16990 | MEDIUM | 6.2 | 1.4% | Nov 11, 2020 | Azure Sphere Information Disclosure Vulnerability |
| CVE-2020-16989 | MEDIUM | 5.4 | 0.7% | Nov 11, 2020 | Azure Sphere Elevation of Privilege Vulnerability |
| CVE-2020-16988 | MEDIUM | 6.9 | 0.7% | Nov 11, 2020 | Azure Sphere Elevation of Privilege Vulnerability |
| CVE-2020-16986 | MEDIUM | 6.2 | 1.2% | Nov 11, 2020 | Azure Sphere Denial of Service Vulnerability |
| CVE-2020-16985 | MEDIUM | 6.2 | 1.7% | Nov 11, 2020 | Azure Sphere Information Disclosure Vulnerability |
| CVE-2020-16983 | MEDIUM | 5.7 | 0.7% | Nov 11, 2020 | Azure Sphere Tampering Vulnerability |
| CVE-2020-16982 | MEDIUM | 6.1 | 1.2% | Nov 11, 2020 | Azure Sphere Unsigned Code Execution Vulnerability |
| CVE-2020-16981 | MEDIUM | 6.1 | 0.7% | Nov 11, 2020 | Azure Sphere Elevation of Privilege Vulnerability |
| CVE-2020-16979 | MEDIUM | 5.3 | 2.9% | Nov 11, 2020 | Microsoft SharePoint Information Disclosure Vulnerability |
| CVE-2020-16127 | MEDIUM | 5.5 | 0.4% | Nov 11, 2020 | An Ubuntu-specific modification to AccountsService in versions before 0.6.55-0ubuntu13.2, among other earlier versions, ... |
| CVE-2020-25267 | MEDIUM | 5.4 | 0.5% | Nov 10, 2020 | An XSS issue exists in the question-pool file-upload preview feature in ILIAS 6.4. |
| CVE-2020-28409 | MEDIUM | 5.4 | 0.5% | Nov 10, 2020 | The server in Dundas BI through 8.0.0.1001 allows XSS via addition of a Component (e.g., a button) when events such as c... |
| CVE-2020-28408 | MEDIUM | 5.4 | 0.5% | Nov 10, 2020 | The server in Dundas BI through 8.0.0.1001 allows XSS via an HTML label when creating or editing a dashboard. |
| CVE-2020-28368 | MEDIUM | 4.4 | 0.4% | Nov 10, 2020 | Xen through 4.14.x allows guest OS administrators to obtain sensitive information (such as AES keys from outside the gue... |
| CVE-2020-27403 | MEDIUM | 6.5 | 2.7% | Nov 10, 2020 | A vulnerability in the TCL Android Smart TV series V8-R851T02-LF1 V295 and below and V8-T658T01-LF1 V373 and below by TC... |
| CVE-2020-6316 | MEDIUM | 4.3 | 0.8% | Nov 10, 2020 | SAP ERP and SAP S/4 HANA allows an authenticated user to see cost records to objects to which he has no authorization in... |
| CVE-2020-26814 | MEDIUM | 4.9 | 0.9% | Nov 10, 2020 | SAP Process Integration (PGP Module - Business-to-Business Add On), version - 1.0, allows an attacker to read PGP Keys u... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now