2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-16915HIGH7.8<p>A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory. An attac...
CVE-2020-16914MEDIUM5.5<p>An information disclosure vulnerability exists in the way that the Windows Graphics Device Interface Plus (GDI+) hand...
CVE-2020-16913HIGH7.8<p>An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handl...
CVE-2020-16912HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Backup Service improperly handles file operations.</p...
CVE-2020-16911HIGH8.8<p>A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles obje...
CVE-2020-16910MEDIUM6.2<p>A security feature bypass vulnerability exists when Microsoft Windows fails to handle file creation permissions, whic...
CVE-2020-16909HIGH7.8<p>An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. ...
CVE-2020-16908HIGH7.8<p>An elevation of privilege vulnerability exists in Windows Setup in the way it handles directories.</p> <p>A locally a...
CVE-2020-16907HIGH7.8<p>An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handl...
CVE-2020-16905MEDIUM6.8<p>An elevation of privilege vulnerability exists in Windows Error Reporting (WER) when WER handles and executes files. ...
CVE-2020-16904MEDIUM5.3<p>An elevation of privilege vulnerability exists in the way Azure Functions validate access keys.</p> <p>An unauthentic...
CVE-2020-16902HIGH7.8<p>An elevation of privilege vulnerability exists in the Windows Installer when the Windows Installer fails to properly ...
CVE-2020-16901MEDIUM5<p>An information disclosure vulnerability exists when the Windows kernel improperly initializes objects in memory.</p> ...
CVE-2020-16900HIGH7<p>An elevation of privilege vulnerability exists when the Windows Event System improperly handles objects in memory.</p...
CVE-2020-16899HIGH7.5<p>A denial of service vulnerability exists when the Windows TCP/IP stack improperly handles ICMPv6 Router Advertisement...
CVE-2020-16898HIGH8.8<p>A remote code execution vulnerability exists when the Windows TCP/IP stack improperly handles ICMPv6 Router Advertise...
CVE-2020-16897MEDIUM5.5<p>An information disclosure vulnerability exists when NetBIOS over TCP (NBT) Extensions (NetBT) improperly handle objec...
CVE-2020-16896HIGH7.5<p>An information disclosure vulnerability exists in Remote Desktop Protocol (RDP) when an attacker connects to the targ...
CVE-2020-16895HIGH7.8<p>An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles a process cras...
CVE-2020-16894HIGH7.7<p>A denial of service vulnerability exists when Windows Network Address Translation (NAT) on a host server fails to pro...
CVE-2020-16892HIGH7.8<p>An elevation of privilege vulnerability exists in the way that the Windows kernel image handles objects in memory. An...
CVE-2020-16891HIGH8.8<p>A remote code execution vulnerability exists when Windows Hyper-V on a host server fails to properly validate input f...
CVE-2020-16890HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory. An...
CVE-2020-16889MEDIUM5.5<p>An information disclosure vulnerability exists when the Windows KernelStream improperly handles objects in memory. An...
CVE-2020-16887HIGH7.8<p>An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles object...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now