2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-1034MEDIUM6.8<p>An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attac...
CVE-2020-1033MEDIUM4<p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attac...
CVE-2020-1031HIGH7.5<p>An information disclosure vulnerability exists in the way that the Windows Server DHCP service improperly discloses t...
CVE-2020-1030HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Print Spooler service improperly allows arbitrary wri...
CVE-2020-1013HIGH7.5<p>An elevation of privilege vulnerability exists when Microsoft Windows processes group policy updates. An attacker who...
CVE-2020-1012HIGH8.8<p>An elevation of privilege vulnerability exists in the way that the Wininit.dll handles objects in memory. An attacker...
CVE-2020-16884MEDIUM4.2<p>A remote code execution vulnerability exists in the way that the IEToEdge Browser Helper Object (BHO) plugin on Inter...
CVE-2020-16881HIGH7.8<p>A remote code execution vulnerability exists in Visual Studio Code when a user is tricked into opening a malicious 'p...
CVE-2020-16879MEDIUM5.5<p>An information disclosure vulnerability exists when a Windows Projected Filesystem improperly handles file redirectio...
CVE-2020-16878MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16875HIGH8.4<p>A remote code execution vulnerability exists in Microsoft Exchange server due to improper validation of cmdlet argume...
CVE-2020-16874HIGH7.8<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attack...
CVE-2020-16873MEDIUM4.7<p>A spoofing vulnerability manifests in Microsoft Xamarin.Forms due to the default settings on Android WebView version ...
CVE-2020-16872HIGH7.6<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16871MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16864MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16862HIGH7.1<p>A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) when the server fails to properl...
CVE-2020-16861MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16860MEDIUM6.8<p>A remote code execution vulnerability exists in Microsoft Dynamics 365 (on-premises) when the server fails to properl...
CVE-2020-16859MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16858MEDIUM5.4<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a sp...
CVE-2020-16857HIGH7.1<p>A remote code execution vulnerability exists in Microsoft Dynamics 365 for Finance and Operations (on-premises) versi...
CVE-2020-16856HIGH7.8<p>A remote code execution vulnerability exists in Visual Studio when it improperly handles objects in memory. An attack...
CVE-2020-16855MEDIUM5.5<p>An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uni...
CVE-2020-16854MEDIUM5.5<p>An information disclosure vulnerability exists when the Windows kernel improperly handles objects in memory. An attac...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now