2020 CVE Vulnerabilities
21,070 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0702 | MEDIUM | 6.8 | 0.9% | Feb 11, 2020 | A security feature bypass vulnerability exists in Surface Hub when prompting for credentials, aka 'Surface Hub Security ... |
| CVE-2020-0698 | MEDIUM | 5.5 | 1.5% | Feb 11, 2020 | An information disclosure vulnerability exists when the Telephony Service improperly discloses the contents of its memor... |
| CVE-2020-0696 | MEDIUM | 6.5 | 4.9% | Feb 11, 2020 | A security feature bypass vulnerability exists in Microsoft Outlook software when it improperly handles the parsing of U... |
| CVE-2020-0695 | MEDIUM | 5.4 | 0.9% | Feb 11, 2020 | A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correc... |
| CVE-2020-0694 | MEDIUM | 5.4 | 1.6% | Feb 11, 2020 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2020-0693 | MEDIUM | 5.4 | 1.6% | Feb 11, 2020 | A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall... |
| CVE-2020-0689 | MEDIUM | 6.7 | 1.0% | Feb 11, 2020 | A security feature bypass vulnerability exists in secure boot, aka 'Microsoft Secure Boot Security Feature Bypass Vulner... |
| CVE-2020-0677 | MEDIUM | 5.5 | 1.6% | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper... |
| CVE-2020-0676 | MEDIUM | 5.5 | 1.6% | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper... |
| CVE-2020-0675 | MEDIUM | 5.5 | 1.6% | Feb 11, 2020 | An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper... |
| CVE-2020-0663 | MEDIUM | 4.2 | 1.5% | Feb 11, 2020 | An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, whic... |
| CVE-2020-0661 | MEDIUM | 6.8 | 1.6% | Feb 11, 2020 | A denial of service vulnerability exists when Microsoft Hyper-V on a host server fails to properly validate input from a... |
| CVE-2020-0658 | MEDIUM | 5.5 | 1.5% | Feb 11, 2020 | An information disclosure vulnerability exists in the Windows Common Log File System (CLFS) driver when it fails to prop... |
| CVE-2020-1726 | MEDIUM | 5.9 | 1.8% | Feb 11, 2020 | A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volum... |
| CVE-2020-1711 | MEDIUM | 6 | 4.0% | Feb 11, 2020 | An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.... |
| CVE-2020-5826 | MEDIUM | 5.5 | 0.3% | Feb 11, 2020 | Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ... |
| CVE-2020-5825 | MEDIUM | 5.5 | 0.4% | Feb 11, 2020 | Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ... |
| CVE-2020-5824 | MEDIUM | 5.5 | 0.3% | Feb 11, 2020 | Symantec Endpoint Protection (SEP) and Symantec Endpoint Protection Small Business Edition (SEP SBE), prior to 14.2 RU2 ... |
| CVE-2020-6412 | MEDIUM | 5.4 | 1.5% | Feb 11, 2020 | Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t... |
| CVE-2020-6411 | MEDIUM | 5.4 | 1.4% | Feb 11, 2020 | Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t... |
| CVE-2020-6408 | MEDIUM | 6.5 | 1.6% | Feb 11, 2020 | Insufficient policy enforcement in CORS in Google Chrome prior to 80.0.3987.87 allowed a local attacker to obtain potent... |
| CVE-2020-6405 | MEDIUM | 6.5 | 2.6% | Feb 11, 2020 | Out of bounds read in SQLite in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to obtain potentially sens... |
| CVE-2020-6403 | MEDIUM | 4.3 | 1.6% | Feb 11, 2020 | Incorrect implementation in Omnibox in Google Chrome on iOS prior to 80.0.3987.87 allowed a remote attacker to spoof the... |
| CVE-2020-6401 | MEDIUM | 6.5 | 1.9% | Feb 11, 2020 | Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 80.0.3987.87 allowed a remote attacker t... |
| CVE-2020-6400 | MEDIUM | 6.5 | 2.0% | Feb 11, 2020 | Inappropriate implementation in CORS in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to leak cross-orig... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now