2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-0998HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Graphics Component improperly handles objects in memo...
CVE-2020-0997HIGH7.8<p>A remote code execution vulnerability exists when the Windows Camera Codec Pack improperly handles objects in memory....
CVE-2020-0922HIGH8.8<p>A remote code execution vulnerability exists in the way that Microsoft COM for Windows handles objects in memory. An ...
CVE-2020-0912HIGH7<p>An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles m...
CVE-2020-0911HIGH7.8<p>An elevation of privilege vulnerability exists when Windows Modules Installer improperly handles objects in memory. A...
CVE-2020-0908HIGH7.5<p>A remote code execution vulnerability exists when the Windows Text Service Module improperly handles memory. An attac...
CVE-2020-0886HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations. A...
CVE-2020-0870HIGH7.8<p>An elevation of privilege vulnerability exists when the Shell infrastructure component improperly handles objects in ...
CVE-2020-0839HIGH7.8<p>An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory. An attacke...
CVE-2020-0838HIGH7.8<p>An elevation of privilege vulnerability exists when NTFS improperly checks access. An attacker who successfully explo...
CVE-2020-0836HIGH7.5<p>A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who suc...
CVE-2020-0790HIGH7.8<p>A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls. An attacker who succes...
CVE-2020-0782HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Cryptographic Catalog Services improperly handle obje...
CVE-2020-0766HIGH7.8<p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory.</p> <p>To ...
CVE-2020-0761HIGH8.8<p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo...
CVE-2020-0718HIGH8.8<p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo...
CVE-2020-0648HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows RSoP Service Application improperly handles memory.</...
CVE-2020-25276HIGH7.3An issue was discovered in PrimeKey EJBCA 6.x and 7.x before 7.4.1. When using a client certificate to enroll over the E...
CVE-2020-15166HIGH7.5In ZeroMQ before version 4.3.3, there is a denial-of-service vulnerability. Users with TCP transport public endpoints, e...
CVE-2020-11991HIGH7.5When using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system e...
CVE-2020-16222HIGH8.8In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when...
CVE-2020-24164HIGH7.8A deserialization flaw is present in Taoensso Nippy before 2.14.2. In some circumstances, it is possible for an attacker...
CVE-2020-25255HIGH7.5An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an...
CVE-2020-25252HIGH8.8An issue was discovered in Hyland OnBase through 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16...
CVE-2020-25250HIGH7.5An issue was discovered in Hyland OnBase 16.0.2.83 and below, 17.0.2.109 and below, 18.0.0.37 and below, 19.8.16.1000 an...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now