2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-13267 | MEDIUM | 6.1 | 1.8% | Jun 10, 2020 | A Stored Cross-Site Scripting vulnerability allowed the execution on Javascript payloads on the Metrics Dashboard in Git... |
| CVE-2020-6270 | MEDIUM | 6.5 | 0.8% | Jun 10, 2020 | SAP NetWeaver AS ABAP (Banking Services), versions - 710, 711, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not per... |
| CVE-2020-6269 | MEDIUM | 6.5 | 0.8% | Jun 10, 2020 | Under certain conditions SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access ... |
| CVE-2020-6266 | MEDIUM | 5.4 | 0.6% | Jun 10, 2020 | SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due t... |
| CVE-2020-6260 | MEDIUM | 5.3 | 0.8% | Jun 10, 2020 | SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to inject superflous data that can be displayed ... |
| CVE-2020-6246 | MEDIUM | 6.1 | 0.7% | Jun 10, 2020 | SAP NetWeaver AS ABAP Business Server Pages Test Application SBSPEXT_TABLE, versions 700, 701, 702, 730, 731, 740, 750, ... |
| CVE-2020-6239 | MEDIUM | 4.4 | 0.3% | Jun 10, 2020 | Under certain conditions SAP Business One (Backup service), versions 9.3, 10.0, allows an attacker with admin permission... |
| CVE-2020-8337 | MEDIUM | 6.7 | 0.4% | Jun 9, 2020 | An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app as... |
| CVE-2020-8336 | MEDIUM | 6.8 | 0.3% | Jun 9, 2020 | Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmwar... |
| CVE-2020-8334 | MEDIUM | 6.8 | 0.3% | Jun 9, 2020 | The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which... |
| CVE-2020-8323 | MEDIUM | 6.7 | 0.3% | Jun 9, 2020 | A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStatio... |
| CVE-2020-8322 | MEDIUM | 6.7 | 0.3% | Jun 9, 2020 | A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkSt... |
| CVE-2020-8321 | MEDIUM | 6.7 | 0.3% | Jun 9, 2020 | A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Not... |
| CVE-2020-8320 | MEDIUM | 6.8 | 0.3% | Jun 9, 2020 | An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege. |
| CVE-2020-1348 | MEDIUM | 6.5 | 5.2% | Jun 9, 2020 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2020-1343 | MEDIUM | 5.9 | 2.8% | Jun 9, 2020 | An information disclosure vulnerability exists in Visual Studio Code Live Share Extension when it exposes tokens in plai... |
| CVE-2020-1340 | MEDIUM | 5.4 | 1.6% | Jun 9, 2020 | A spoofing vulnerability exists when the NuGetGallery does not properly sanitize input on package metadata values, aka '... |
| CVE-2020-1331 | MEDIUM | 5.4 | 1.3% | Jun 9, 2020 | A spoofing vulnerability exists when System Center Operations Manager (SCOM) does not properly sanitize a specially craf... |
| CVE-2020-1329 | MEDIUM | 6.5 | 2.6% | Jun 9, 2020 | A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Mi... |
| CVE-2020-1327 | MEDIUM | 6.1 | 1.8% | Jun 9, 2020 | A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azu... |
| CVE-2020-1323 | MEDIUM | 6.1 | 2.4% | Jun 9, 2020 | An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, ... |
| CVE-2020-1322 | MEDIUM | 6.5 | 5.5% | Jun 9, 2020 | An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized ... |
| CVE-2020-1320 | MEDIUM | 5.4 | 1.5% | Jun 9, 2020 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2020-1318 | MEDIUM | 5.4 | 1.5% | Jun 9, 2020 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2020-1315 | MEDIUM | 5.3 | 3.8% | Jun 9, 2020 | An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory, aka 'Interne... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now