2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-13416MEDIUM6.5An issue was discovered in Aviatrix Controller before 5.4.1066. A Controller Web Interface session token parameter is no...
CVE-2020-13413MEDIUM5.3An issue was discovered in Aviatrix Controller before 5.4.1204. There is a Observable Response Discrepancy from the API,...
CVE-2020-12397MEDIUM4.3By encoding Unicode whitespace characters within the From email header, an attacker can spoof the sender email address t...
CVE-2020-13397MEDIUM5.5An issue was discovered in FreeRDP before 2.1.1. An out-of-bounds (OOB) read vulnerability has been detected in security...
CVE-2020-7658MEDIUM6.1meinheld prior to 1.0.2 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks mi...
CVE-2020-10711MEDIUM5.9A NULL pointer dereference flaw was found in the Linux kernel's SELinux subsystem in versions before 5.7. This flaw occu...
CVE-2020-8789MEDIUM5.4Composr 10.0.30 allows Persistent XSS via a Usergroup name under the Security configuration.
CVE-2020-3344MEDIUM5.5A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software c...
CVE-2020-3343MEDIUM5.5A vulnerability in Cisco AMP for Endpoints Linux Connector Software and Cisco AMP for Endpoints Mac Connector Software c...
CVE-2020-3314MEDIUM6.1A vulnerability in the file scan process of Cisco AMP for Endpoints Mac Connector Software could cause the scan engine t...
CVE-2020-1195MEDIUM5.9An elevation of privilege vulnerability exists in Microsoft Edge (Chromium-based) when the Feedback extension improperly...
CVE-2020-1179MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2020-1173MEDIUM6.8A spoofing vulnerability exists in Microsoft Power BI Report Server in the way it validates the content-type of uploaded...
CVE-2020-1145MEDIUM5.5An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objec...
CVE-2020-1141MEDIUM5.5An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objec...
CVE-2020-1123MEDIUM5.5A denial of service vulnerability exists when Connected User Experiences and Telemetry Service improperly handles file o...
CVE-2020-1116MEDIUM5.5An information disclosure vulnerability exists when the Windows Client Server Run-Time Subsystem (CSRSS) fails to proper...
CVE-2020-1107MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1106MEDIUM6.1A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1105MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1104MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1103MEDIUM6.5An information disclosure vulnerability exists where certain modes of the search function in Microsoft SharePoint Server...
CVE-2020-1101MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1100MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1099MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now