2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-0853MEDIUM6.5An information disclosure vulnerability exists in Windows when the Windows Imaging Component fails to properly handle ob...
CVE-2020-0820MEDIUM5.5An information disclosure vulnerability exists when Media Foundation improperly handles objects in memory, aka 'Media Fo...
CVE-2020-0795MEDIUM5.4This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted request to an affecte...
CVE-2020-0779MEDIUM5.5An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'W...
CVE-2020-0775MEDIUM5.5An information disclosure vulnerability exists when Windows Error Reporting improperly handles file operations.To exploi...
CVE-2020-0774MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2020-0765MEDIUM5.5An information disclosure vulnerability exists in the Remote Desktop Connection Manager (RDCMan) application when it imp...
CVE-2020-0700MEDIUM5.4A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided inpu...
CVE-2020-8436MEDIUM6.1XSS was discovered in the RegistrationMagic plugin 4.6.0.0 for WordPress via the rm_form_id, rm_tr, or form_name paramet...
CVE-2020-6858MEDIUM6.5Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted u...
CVE-2020-10504MEDIUM4.3CSRF in admin/edit-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a comment, given the ...
CVE-2020-10503MEDIUM4.3CSRF in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to disapprove any comment, ...
CVE-2020-10502MEDIUM4.3CSRF in admin/manage-comments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to approve any comment, giv...
CVE-2020-10501MEDIUM6.5CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a department, gi...
CVE-2020-10500MEDIUM4.3CSRF in admin/reply-ticket.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to reply to any ticket, given ...
CVE-2020-10499MEDIUM4.3CSRF in admin/manage-tickets.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to close any ticket, given t...
CVE-2020-10498MEDIUM6.5CSRF in admin/edit-category.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a category, given the...
CVE-2020-10497MEDIUM6.5CSRF in admin/manage-categories.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a category via ...
CVE-2020-10496MEDIUM4.3CSRF in admin/edit-article.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit an article, given the ...
CVE-2020-10495MEDIUM4.3CSRF in admin/edit-template.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit an article template, ...
CVE-2020-10494MEDIUM4.3CSRF in admin/edit-news.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a news article, given the...
CVE-2020-10493MEDIUM4.3CSRF in admin/edit-glossary.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to edit a glossary term, give...
CVE-2020-10492MEDIUM4.3CSRF in admin/manage-templates.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete an article templ...
CVE-2020-10491MEDIUM4.3CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to add a department via ...
CVE-2020-10490MEDIUM4.3CSRF in admin/manage-departments.php in Chadha PHPKB Standard Multi-Language 9 allows attackers to delete a department v...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now