2020 CVE Vulnerabilities

21,070 CVEs published in 2020.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2020-0702MEDIUM6.8A security feature bypass vulnerability exists in Surface Hub when prompting for credentials, aka 'Surface Hub Security ...
CVE-2020-0698MEDIUM5.5An information disclosure vulnerability exists when the Telephony Service improperly discloses the contents of its memor...
CVE-2020-0696MEDIUM6.5A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of U...
CVE-2020-0695MEDIUM5.4A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correc...
CVE-2020-0694MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-0693MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-0689MEDIUM6.7A security feature bypass vulnerability exists in secure boot, aka 'Microsoft Secure Boot Security Feature Bypass Vulner...
CVE-2020-0677MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0676MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0675MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0663MEDIUM4.2An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic...
CVE-2020-0661MEDIUM6.8A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a...
CVE-2020-0658MEDIUM5.5An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to prop...
CVE-2020-1726MEDIUM5.9A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volum...
CVE-2020-1711MEDIUM6An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2....
CVE-2020-5826MEDIUM5.5Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ...
CVE-2020-5825MEDIUM5.5Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ...
CVE-2020-5824MEDIUM5.5Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ...
CVE-2020-6412MEDIUM5.4Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t...
CVE-2020-6411MEDIUM5.4Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t...
CVE-2020-6408MEDIUM6.5Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potent...
CVE-2020-6405MEDIUM6.5Out of bounds read in SQLite in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to obtain potentially sens...
CVE-2020-6403MEDIUM4.3Incorrect implementation in Omnibox in Google Chrome on iOS prior to 80.0.3987.87 allowed a remote attacker to spoof the...
CVE-2020-6401MEDIUM6.5Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t...
CVE-2020-6400MEDIUM6.5Inappropriate implementation in CORS in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-orig...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now