2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0836HIGH7.5<p>A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who suc...
CVE-2020-0805MEDIUM5.3<p>A security feature bypass vulnerability exists when a Windows Projected Filesystem improperly handles file redirectio...
CVE-2020-0790HIGH7.8<p>A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls. An attacker who succes...
CVE-2020-0782HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows Cryptographic Catalog Services improperly handle obje...
CVE-2020-0766HIGH7.8<p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory.</p> <p>To ...
CVE-2020-0761HIGH8.8<p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo...
CVE-2020-0718HIGH8.8<p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo...
CVE-2020-0664MEDIUM6.5<p>An information disclosure vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in me...
CVE-2020-0648HIGH7.8<p>An elevation of privilege vulnerability exists when the Windows RSoP Service Application improperly handles memory.</...
CVE-2020-25276HIGH7.3An issue was discovered in PrimeKey EJBCA 6.x and 7.x before 7.4.1. When using a client certificate to enroll over the E...
CVE-2020-15169MEDIUM6.1In Action View before versions 5.2.4.4 and 6.0.3.3 there is a potential Cross-Site Scripting (XSS) vulnerability in Acti...
CVE-2020-15166HIGH7.5In ZeroMQ before version 4.3.3, there is a denial-of-service vulnerability. Users with TCP transport public endpoints, e...
CVE-2020-9239MEDIUM5.5Huawei smartphones BLA-A09 versions 8.0.0.123(C212),versions earlier than 8.0.0.123(C567),versions earlier than 8.0.0.12...
CVE-2020-16224MEDIUM6.5In Patient Information Center iX (PICiX) Versions C.02, C.03, the software parses a formatted message or structure but ...
CVE-2020-16220MEDIUM4.3In Patient Information Center iX (PICiX) Versions C.02, C.03, PerformanceBridge Focal Point Version A.01, the product r...
CVE-2020-16216MEDIUM6.5In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 ...
CVE-2020-16212MEDIUM6.8In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the product exposes a resource to the wrong control ...
CVE-2020-15802MEDIUM5.9Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivati...
CVE-2020-14100CRITICAL9.8In Xiaomi router R3600 ROM version<1.0.66, filters in the set_WAN6 interface can be bypassed, causing remote code execut...
CVE-2020-14096CRITICAL9.8Memory overflow in Xiaomi AI speaker Rom version <1.59.6 can happen when the speaker verifying a malicious firmware duri...
CVE-2020-11991HIGH7.5When using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system e...
CVE-2020-16228MEDIUM6.4In Patient Information Center iX (PICiX) Versions C.02 and C.03, PerformanceBridge Focal Point Version A.01, IntelliVue...
CVE-2020-16222HIGH8.8In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when...
CVE-2020-16218LOW3.5In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software does not neutralize or incorrectly neu...
CVE-2020-16214MEDIUM5In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software saves user-provided information into a...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now