2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-1357 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows System Events Broker improperly handles file operations,... |
| CVE-2020-1356 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows iSCSI Target Service improperly handles file operations,... |
| CVE-2020-1355 | HIGH | 7.8 | 4.0% | Jul 14, 2020 | A remote code execution vulnerability exists when the Windows Font Driver Host improperly handles memory.An attacker who... |
| CVE-2020-1354 | HIGH | 7.8 | 0.8% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows UPnP Device Host improperly handles memory.To exploit th... |
| CVE-2020-1353 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windo... |
| CVE-2020-1352 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows USO Core Worker improperly handles memory.To exploit thi... |
| CVE-2020-1349 | HIGH | 7.8 | 22.5% | Jul 14, 2020 | A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m... |
| CVE-2020-1347 | HIGH | 7.8 | 0.8% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations, aka ... |
| CVE-2020-1346 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows Modules Installer improperly handles file operations, ak... |
| CVE-2020-1344 | HIGH | 7.8 | 1.0% | Jul 14, 2020 | An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory, aka ... |
| CVE-2020-1336 | HIGH | 7.8 | 0.9% | Jul 14, 2020 | An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker... |
| CVE-2020-1249 | HIGH | 7.8 | 0.8% | Jul 14, 2020 | An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windo... |
| CVE-2020-1240 | HIGH | 8.8 | 13.8% | Jul 14, 2020 | A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje... |
| CVE-2020-1147 | HIGH | 7.8 | 94.2% | Jul 14, 2020 | A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the softwar... |
| CVE-2020-1085 | HIGH | 7.8 | 0.7% | Jul 14, 2020 | An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in... |
| CVE-2020-5374 | HIGH | 7.5 | 1.0% | Jul 14, 2020 | Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain... |
| CVE-2020-5373 | HIGH | 7.5 | 1.4% | Jul 14, 2020 | Dell EMC OpenManage Integration for Microsoft System Center (OMIMSSC) for SCCM and SCVMM versions prior to 7.2.1 contain... |
| CVE-2020-15074 | HIGH | 7.5 | 1.0% | Jul 14, 2020 | OpenVPN Access Server older than version 2.8.4 and version 2.9.5 generates new user authentication tokens instead of reu... |
| CVE-2020-13847 | HIGH | 7.5 | 0.6% | Jul 14, 2020 | Sylabs Singularity 3.0 through 3.5 lacks support for an Integrity Check. Singularity's sign and verify commands do not s... |
| CVE-2020-13846 | HIGH | 7.5 | 1.3% | Jul 14, 2020 | Sylabs Singularity 3.5.0 through 3.5.3 fails to report an error in a Status Code. |
| CVE-2020-13845 | HIGH | 7.5 | 0.5% | Jul 14, 2020 | Sylabs Singularity 3.0 through 3.5 has Improper Validation of an Integrity Check Value. Image integrity is not validated... |
| CVE-2020-11827 | HIGH | 7.8 | 0.3% | Jul 14, 2020 | In GOG Galaxy 1.2.67, there is a service that is vulnerable to weak file/service permissions: GalaxyClientService.exe. A... |
| CVE-2020-13935 | HIGH | 7.5 | 87.6% | Jul 14, 2020 | The payload length in a WebSocket frame was not correctly validated in Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M1 to... |
| CVE-2020-13934 | HIGH | 7.5 | 64.1% | Jul 14, 2020 | An h2c direct connection to Apache Tomcat 10.0.0-M1 to 10.0.0-M6, 9.0.0.M5 to 9.0.36 and 8.5.1 to 8.5.56 did not release... |
| CVE-2020-7587 | HIGH | 8.2 | 2.5% | Jul 14, 2020 | A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation ... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now