2020 CVE Vulnerabilities

21,069 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-1084MEDIUM5.5A Denial Of Service vulnerability exists when Connected User Experiences and Telemetry Service fails to validate certain...
CVE-2020-1076MEDIUM5.5A denial of service vulnerability exists when Windows improperly handles objects in memory, aka 'Windows Denial of Servi...
CVE-2020-1075MEDIUM5.5An information disclosure vulnerability exists when Windows Subsystem for Linux improperly handles objects in memory, ak...
CVE-2020-1072MEDIUM5.5An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory, aka 'Window...
CVE-2020-1071MEDIUM6.8An elevation of privilege vulnerability exists when Windows improperly handles errors tied to Remote Access Common Dialo...
CVE-2020-1063MEDIUM5.4A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a speci...
CVE-2020-1059MEDIUM4.3A spoofing vulnerability exists when Microsoft Edge does not properly parse HTTP content, aka 'Microsoft Edge Spoofing V...
CVE-2020-1055MEDIUM6.1A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly san...
CVE-2020-0963MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2020-13258MEDIUM6.1Contentful through 2020-05-21 for Python allows reflected XSS, as demonstrated by the api parameter to the-example-app.p...
CVE-2020-12431MEDIUM6.6A Windows privilege change issue was discovered in Splashtop Software Updater before 1.5.6.16. Insecure permissions on t...
CVE-2020-9069MEDIUM6.5There is an information leakage vulnerability in some Huawei products. An unauthenticated, adjacent attacker could explo...
CVE-2020-9045MEDIUM6.5During installation or upgrade to Software House C•CURE 9000 v2.70 and American Dynamics victor Video Management System ...
CVE-2020-7655MEDIUM6.1netius prior to 1.17.58 is vulnerable to HTTP Request Smuggling. HTTP pipelining issues and request smuggling attacks mi...
CVE-2020-6491MEDIUM6.5Insufficient data validation in site information in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to spo...
CVE-2020-6490MEDIUM4.3Insufficient data validation in loader in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had been abl...
CVE-2020-6489MEDIUM4.3Inappropriate implementation in developer tools in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had...
CVE-2020-6488MEDIUM4.3Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ...
CVE-2020-6487MEDIUM6.5Insufficient policy enforcement in downloads in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ...
CVE-2020-6486MEDIUM6.5Insufficient policy enforcement in navigations in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypas...
CVE-2020-6485MEDIUM6.5Insufficient data validation in media router in Google Chrome prior to 83.0.4103.61 allowed a remote attacker who had co...
CVE-2020-6484MEDIUM6.5Insufficient data validation in ChromeDriver in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass ...
CVE-2020-6483MEDIUM6.5Insufficient policy enforcement in payments in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to bypass n...
CVE-2020-6482MEDIUM6.5Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convin...
CVE-2020-6481MEDIUM6.5Insufficient policy enforcement in URL formatting in Google Chrome prior to 83.0.4103.61 allowed a remote attacker to pe...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now