2020 CVE Vulnerabilities
21,069 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-1084 | MEDIUM | 5.5 | 1.0% | May 21, 2020 | A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain... |
| CVE-2020-1076 | MEDIUM | 5.5 | 0.9% | May 21, 2020 | A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi... |
| CVE-2020-1075 | MEDIUM | 5.5 | 1.4% | May 21, 2020 | An information disclosure vulnerability exists when Windows Subsystem for Linux improperly handles objects in memory, ak... |
| CVE-2020-1072 | MEDIUM | 5.5 | 1.2% | May 21, 2020 | An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window... |
| CVE-2020-1071 | MEDIUM | 6.8 | 0.9% | May 21, 2020 | An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialo... |
| CVE-2020-1063 | MEDIUM | 5.4 | 1.4% | May 21, 2020 | A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a speci... |
| CVE-2020-1059 | MEDIUM | 4.3 | 2.0% | May 21, 2020 | A spoofing vulnerability exists when Microsoft Edge does not properly parse HTTP content, aka 'Microsoft Edge Spoofing V... |
| CVE-2020-1055 | MEDIUM | 6.1 | 1.8% | May 21, 2020 | A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly san... |
| CVE-2020-0963 | MEDIUM | 6.5 | 5.5% | May 21, 2020 | An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m... |
| CVE-2020-13258 | MEDIUM | 6.1 | 2.5% | May 21, 2020 | Contentful through 2020-05-21 for Python allows reflected XSS, as demonstrated by the api parameter to the-example-app.p... |
| CVE-2020-12431 | MEDIUM | 6.6 | 0.5% | May 21, 2020 | A Windows privilege change issue was discovered in Splashtop Software Updater before 1.5.6.16. Insecure permissions on t... |
| CVE-2020-9069 | MEDIUM | 6.5 | 0.3% | May 21, 2020 | There is an information leakage vulnerability in some Huawei products. An unauthenticated, adjacent attacker could explo... |
| CVE-2020-9045 | MEDIUM | 6.5 | 1.0% | May 21, 2020 | During installation or upgrade to Software House C•CURE 9000 v2.70 and American Dynamics victor Video Management System ... |
| CVE-2020-7655 | MEDIUM | 6.1 | 0.8% | May 21, 2020 | netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks mi... |
| CVE-2020-6491 | MEDIUM | 6.5 | 1.5% | May 21, 2020 | Insufficient data validation in site information in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spo... |
| CVE-2020-6490 | MEDIUM | 4.3 | 1.5% | May 21, 2020 | Insufficient data validation in loader in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had been abl... |
| CVE-2020-6489 | MEDIUM | 4.3 | 1.6% | May 21, 2020 | Inappropriate implementation in developer tools in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had... |
| CVE-2020-6488 | MEDIUM | 4.3 | 1.5% | May 21, 2020 | Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ... |
| CVE-2020-6487 | MEDIUM | 6.5 | 1.6% | May 21, 2020 | Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ... |
| CVE-2020-6486 | MEDIUM | 6.5 | 1.7% | May 21, 2020 | Insufficient policy enforcement in navigations in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypas... |
| CVE-2020-6485 | MEDIUM | 6.5 | 1.7% | May 21, 2020 | Insufficient data validation in media router in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had co... |
| CVE-2020-6484 | MEDIUM | 6.5 | 1.5% | May 21, 2020 | Insufficient data validation in ChromeDriver in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ... |
| CVE-2020-6483 | MEDIUM | 6.5 | 1.7% | May 21, 2020 | Insufficient policy enforcement in payments in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass n... |
| CVE-2020-6482 | MEDIUM | 6.5 | 1.3% | May 21, 2020 | Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convin... |
| CVE-2020-6481 | MEDIUM | 6.5 | 1.5% | May 21, 2020 | Insufficient policy enforcement in URL formatting in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to pe... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now