2020 CVE Vulnerabilities
21,074 CVEs published in 2020.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2020-0836 | HIGH | 7.5 | 5.1% | Sep 11, 2020 | <p>A denial of service vulnerability exists in Windows DNS when it fails to properly handle queries. An attacker who suc... |
| CVE-2020-0805 | MEDIUM | 5.3 | 0.9% | Sep 11, 2020 | <p>A security feature bypass vulnerability exists when a Windows Projected Filesystem improperly handles file redirectio... |
| CVE-2020-0790 | HIGH | 7.8 | 0.9% | Sep 11, 2020 | <p>A local elevation of privilege vulnerability exists in how splwow64.exe handles certain calls. An attacker who succes... |
| CVE-2020-0782 | HIGH | 7.8 | 1.0% | Sep 11, 2020 | <p>An elevation of privilege vulnerability exists when the Windows Cryptographic Catalog Services improperly handle obje... |
| CVE-2020-0766 | HIGH | 7.8 | 0.9% | Sep 11, 2020 | <p>An elevation of privilege vulnerability exists when the Microsoft Store Runtime improperly handles memory.</p> <p>To ... |
| CVE-2020-0761 | HIGH | 8.8 | 3.6% | Sep 11, 2020 | <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo... |
| CVE-2020-0718 | HIGH | 8.8 | 3.6% | Sep 11, 2020 | <p>A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memo... |
| CVE-2020-0664 | MEDIUM | 6.5 | 4.0% | Sep 11, 2020 | <p>An information disclosure vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in me... |
| CVE-2020-0648 | HIGH | 7.8 | 1.0% | Sep 11, 2020 | <p>An elevation of privilege vulnerability exists when the Windows RSoP Service Application improperly handles memory.</... |
| CVE-2020-25276 | HIGH | 7.3 | 0.5% | Sep 11, 2020 | An issue was discovered in PrimeKey EJBCA 6.x and 7.x before 7.4.1. When using a client certificate to enroll over the E... |
| CVE-2020-15169 | MEDIUM | 6.1 | 2.4% | Sep 11, 2020 | In Action View before versions 5.2.4.4 and 6.0.3.3 there is a potential Cross-Site Scripting (XSS) vulnerability in Acti... |
| CVE-2020-15166 | HIGH | 7.5 | 3.4% | Sep 11, 2020 | In ZeroMQ before version 4.3.3, there is a denial-of-service vulnerability. Users with TCP transport public endpoints, e... |
| CVE-2020-9239 | MEDIUM | 5.5 | 0.2% | Sep 11, 2020 | Huawei smartphones BLA-A09 versions 8.0.0.123(C212),versions earlier than 8.0.0.123(C567),versions earlier than 8.0.0.12... |
| CVE-2020-16224 | MEDIUM | 6.5 | 0.6% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions C.02, C.03, the software parses a formatted message or structure but ... |
| CVE-2020-16220 | MEDIUM | 4.3 | 0.3% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions C.02, C.03, PerformanceBridge Focal Point Version A.01, the product r... |
| CVE-2020-16216 | MEDIUM | 6.5 | 0.7% | Sep 11, 2020 | In IntelliVue patient monitors MX100, MX400-550, MX600, MX700, MX750, MX800, MX850, MP2-MP90, and IntelliVue X2 and X3 ... |
| CVE-2020-16212 | MEDIUM | 6.8 | 0.4% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the product exposes a resource to the wrong control ... |
| CVE-2020-15802 | MEDIUM | 5.9 | 7.1% | Sep 11, 2020 | Devices supporting Bluetooth before 5.1 may allow man-in-the-middle attacks, aka BLURtooth. Cross Transport Key Derivati... |
| CVE-2020-14100 | CRITICAL | 9.8 | 5.2% | Sep 11, 2020 | In Xiaomi router R3600 ROM version<1.0.66, filters in the set_WAN6 interface can be bypassed, causing remote code execut... |
| CVE-2020-14096 | CRITICAL | 9.8 | 1.2% | Sep 11, 2020 | Memory overflow in Xiaomi AI speaker Rom version <1.59.6 can happen when the speaker verifying a malicious firmware duri... |
| CVE-2020-11991 | HIGH | 7.5 | 73.1% | Sep 11, 2020 | When using the StreamGenerator, the code parse a user-provided XML. A specially crafted XML, including external system e... |
| CVE-2020-16228 | MEDIUM | 6.4 | 0.4% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions C.02 and C.03, PerformanceBridge Focal Point Version A.01, IntelliVue... |
| CVE-2020-16222 | HIGH | 8.8 | 0.6% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Version B.02, C.02, C.03, and PerformanceBridge Focal Point Version A.01, when... |
| CVE-2020-16218 | LOW | 3.5 | 0.7% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software does not neutralize or incorrectly neu... |
| CVE-2020-16214 | MEDIUM | 5 | 0.6% | Sep 11, 2020 | In Patient Information Center iX (PICiX) Versions B.02, C.02, C.03, the software saves user-provided information into a... |
Check if your code is affected by 2020 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now