2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2020-1201HIGH7.8An elevation of privilege vulnerability exists in the way the Windows Now Playing Session Manager handles objects in mem...
CVE-2020-1199HIGH7.8An elevation of privilege vulnerability exists when the Windows Feedback Hub improperly handles objects in memory, aka '...
CVE-2020-1197HIGH7.8An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process crash, ...
CVE-2020-1196HIGH7.8An elevation of privilege vulnerability exists in the way that the printconfig.dll handles objects in memory, aka 'Windo...
CVE-2020-1181HIGH8.8A remote code execution vulnerability exists in Microsoft SharePoint Server when it fails to properly identify and filte...
CVE-2020-1178HIGH8.8An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially c...
CVE-2020-1170HIGH7.8An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To e...
CVE-2020-1163HIGH7.8An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To e...
CVE-2020-1162HIGH7.8An elevation of privilege (user to user) vulnerability exists in Windows Security Health Service when handling certain o...
CVE-2020-1073HIGH8.1A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, ...
CVE-2020-0986HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '...
CVE-2020-0916HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objec...
CVE-2020-0915HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objec...
CVE-2020-13872HIGH8.8Royal TS before 5 has a 0.0.0.0 listener, which makes it easier for attackers to bypass tunnel authentication via a brut...
CVE-2020-11957HIGH7.5The Bluetooth Low Energy implementation in Cypress PSoC Creator BLE 4.2 component versions before 3.64 generates a rando...
CVE-2020-12004HIGH7.5The affected product lacks proper authentication required to query the server on the Ignition 8 Gateway (versions prior ...
CVE-2020-12000HIGH7.5The affected product is vulnerable to the handling of serialized data. The issue results from the lack of proper validat...
CVE-2020-10644HIGH7.5The affected product lacks proper validation of user-supplied data, which can result in deserialization of untrusted dat...
CVE-2020-9858HIGH7.8A dynamic library loading issue was addressed with improved path searching. This issue is fixed in Windows Migration Ass...
CVE-2020-9855HIGH7.8A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. T...
CVE-2020-9852HIGH7.8An integer overflow was addressed through improved input validation. This issue is fixed in iOS 13.5 and iPadOS 13.5, ma...
CVE-2020-9847HIGH8.6An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.5. A mali...
CVE-2020-9844HIGH7.5A double free issue was addressed with improved memory management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macO...
CVE-2020-9843HIGH7.1An input validation issue was addressed with improved input validation. This issue is fixed in iOS 13.5 and iPadOS 13.5,...
CVE-2020-9842HIGH7.1An entitlement parsing issue was addressed with improved parsing. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now