2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-9698HIGH7.8Adobe Acrobat and Reader versions 2020.009.20074 and earlier, 2020.001.30002, 2017.011.30171 and earlier, and 2015.006.3...
CVE-2020-24394HIGH7.1In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem obje...
CVE-2020-24381HIGH7.5GUnet Open eClass Platform (aka openeclass) before 3.11 might allow remote attackers to read students' submitted assessm...
CVE-2020-5385HIGH7.8Dell Encryption versions prior to 10.8 and Dell Endpoint Security Suite versions prior to 2.8 contain a privilege escala...
CVE-2020-23934HIGH8.8An issue was discovered in RiteCMS 2.2.1. An authenticated user can directly execute system commands by uploading a php ...
CVE-2020-7018HIGH8.8Elastic Enterprise Search before 7.9.0 contain a credential exposure flaw in the App Search interface. If a user is give...
CVE-2020-13933HIGH7.5Apache Shiro before 1.6.0, when using Apache Shiro, a specially crafted HTTP request may cause an authentication bypass.
CVE-2020-1597HIGH7.5A denial of service vulnerability exists when ASP.NET Core improperly handles web requests. An attacker who successfully...
CVE-2020-1587HIGH7.8An elevation of privilege vulnerability exists when the Windows Ancillary Function Driver for WinSock improperly handles...
CVE-2020-1585HIGH8.8A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory....
CVE-2020-1584HIGH7.8An elevation of privilege vulnerability exists in the way that the dnsrslvr.dll handles objects in memory. An attacker w...
CVE-2020-1583HIGH8.8An information disclosure vulnerability exists when Microsoft Word improperly discloses the contents of its memory. An a...
CVE-2020-1582HIGH7.8A remote code execution vulnerability exists in Microsoft Access software when the software fails to properly handle obj...
CVE-2020-1581HIGH7.8An elevation of privilege vulnerability exists in the way that Microsoft Office Click-to-Run (C2R) components handle obj...
CVE-2020-1579HIGH7.8An elevation of privilege vulnerability exists when the Windows Function Discovery SSDP Provider improperly handles memo...
CVE-2020-1577HIGH7.8An information disclosure vulnerability exists when DirectWrite improperly discloses the contents of its memory. An atta...
CVE-2020-1571HIGH7.3An elevation of privilege vulnerability exists in Windows Setup in the way it handles permissions. A locally authenticat...
CVE-2020-1570HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2020-1569HIGH7.8A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory. The vulnerabilit...
CVE-2020-1568HIGH7.5A remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory. The vu...
CVE-2020-1565HIGH7.5An elevation of privilege vulnerability exists when the "Public Account Pictures" folder improperly handles ju...
CVE-2020-1564HIGH7.8A remote code execution vulnerability exists when the Windows Jet Database Engine improperly handles objects in memory. ...
CVE-2020-1563HIGH7.8A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle obj...
CVE-2020-1562HIGH7.8A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory. An ...
CVE-2020-1561HIGH8.8A remote code execution vulnerability exists in the way that Microsoft Graphics Components handle objects in memory. An ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now