2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-13267MEDIUM6.1A Stored Cross-Site Scripting vulnerability allowed the execution on Javascript payloads on the Metrics Dashboard in Git...
CVE-2020-6270MEDIUM6.5SAP NetWeaver AS ABAP (Banking Services), versions - 710, 711, 740, 750, 751, 752, 75A, 75B, 75C, 75D, 75E, does not per...
CVE-2020-6269MEDIUM6.5Under certain conditions SAP Business Objects Business Intelligence Platform, version 4.2, allows an attacker to access ...
CVE-2020-6266MEDIUM5.4SAP Fiori for SAP S/4HANA, versions - 100, 200, 300, 400, allows an attacker to redirect users to a malicious site due t...
CVE-2020-6260MEDIUM5.3SAP Solution Manager (Trace Analysis), version 7.20, allows an attacker to inject superflous data that can be displayed ...
CVE-2020-6246MEDIUM6.1SAP NetWeaver AS ABAP Business Server Pages Test Application SBSPEXT_TABLE, versions 700, 701, 702, 730, 731, 740, 750, ...
CVE-2020-6239MEDIUM4.4Under certain conditions SAP Business One (Backup service), versions 9.3, 10.0, allows an attacker with admin permission...
CVE-2020-8337MEDIUM6.7An unquoted search path vulnerability was reported in versions prior to 1.0.83.0 of the Synaptics Smart Audio UWP app as...
CVE-2020-8336MEDIUM6.8Lenovo implemented Intel CSME Anti-rollback ARB protections on some ThinkPad models to prevent roll back of CSME Firmwar...
CVE-2020-8334MEDIUM6.8The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad T495s, X395, T495, A485, A285, A475, A275 which...
CVE-2020-8323MEDIUM6.7A potential vulnerability in the SMI callback function used in the Legacy SD driver in some Lenovo ThinkPad, ThinkStatio...
CVE-2020-8322MEDIUM6.7A potential vulnerability in the SMI callback function used in the Legacy USB driver in some Lenovo Notebook and ThinkSt...
CVE-2020-8321MEDIUM6.7A potential vulnerability in the SMI callback function used in the System Lock Preinstallation driver in some Lenovo Not...
CVE-2020-8320MEDIUM6.8An internal shell was included in BIOS image in some ThinkPad models that could allow escalation of privilege.
CVE-2020-1348MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2020-1343MEDIUM5.9An information disclosure vulnerability exists in Visual Studio Code Live Share Extension when it exposes tokens in plai...
CVE-2020-1340MEDIUM5.4A spoofing vulnerability exists when the NuGetGallery does not properly sanitize input on package metadata values, aka '...
CVE-2020-1331MEDIUM5.4A spoofing vulnerability exists when System Center Operations Manager (SCOM) does not properly sanitize a specially craf...
CVE-2020-1329MEDIUM6.5A spoofing vulnerability exists when Microsoft Bing Search for Android improperly handles specific HTML content, aka 'Mi...
CVE-2020-1327MEDIUM6.1A spoofing vulnerability exists in Microsoft Azure DevOps Server when it fails to properly handle web requests, aka 'Azu...
CVE-2020-1323MEDIUM6.1An open redirect vulnerability exists in Microsoft SharePoint that could lead to spoofing.To exploit the vulnerability, ...
CVE-2020-1322MEDIUM6.5An information disclosure vulnerability exists when Microsoft Project reads out of bound memory due to an uninitialized ...
CVE-2020-1320MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1318MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1315MEDIUM5.3An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory, aka 'Interne...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now