2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-1310MEDIUM6.7An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2020-1298MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1297MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1296MEDIUM5.5A vulnerability exists in the way the Windows Diagnostics & feedback settings app handles objects in memory, aka 'Wi...
CVE-2020-1290MEDIUM5.5An information disclosure vulnerability exists when the win32k component improperly provides kernel information, aka 'Wi...
CVE-2020-1289MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1284MEDIUM6.5A denial of service vulnerability exists in the way that the Microsoft Server Message Block 3.1.1 (SMBv3) protocol handl...
CVE-2020-1283MEDIUM6.5A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi...
CVE-2020-1268MEDIUM5.5An information disclosure vulnerability exists when a Windows service improperly handles objects in memory, aka 'Windows...
CVE-2020-1263MEDIUM5.5An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '...
CVE-2020-1261MEDIUM5.5An information disclosure vulnerability exists in the way Windows Error Reporting (WER) handles objects in memory, aka '...
CVE-2020-1259MEDIUM4.3A security feature bypass vulnerability exists when Windows Host Guardian Service improperly handles hashes recorded and...
CVE-2020-1258MEDIUM6.7An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation...
CVE-2020-1253MEDIUM6.7An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2020-1251MEDIUM6.7An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2020-1242MEDIUM5.3An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka 'Micros...
CVE-2020-1232MEDIUM6.5An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Fo...
CVE-2020-1229MEDIUM4.3A security feature bypass vulnerability exists in Microsoft Outlook when Office fails to enforce security settings confi...
CVE-2020-1220MEDIUM6.1A spoofing vulnerability exists when theMicrosoft Edge (Chromium-based) in IE Mode improperly handles specific redirects...
CVE-2020-1194MEDIUM5.5A denial of service vulnerability exists when Windows Registry improperly handles filesystem operations, aka 'Windows Re...
CVE-2020-1183MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1177MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1160MEDIUM5.5An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects ...
CVE-2020-1148MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1120MEDIUM5.5A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file o...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now