2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-1468MEDIUM6.5An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its m...
CVE-2020-1465HIGH7.8An elevation of privilege vulnerability exists in Microsoft OneDrive that allows file deletion in arbitrary locations.To...
CVE-2020-1463HIGH7.8An elevation of privilege vulnerability exists in the way that the SharedStream Library handles objects in memory, aka '...
CVE-2020-1462MEDIUM4.3An information disclosure vulnerability exists when Skype for Business is accessed via Microsoft Edge (EdgeHTML-based), ...
CVE-2020-1461HIGH7.1An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary loc...
CVE-2020-1458HIGH7.8A remote code execution vulnerability exists when Microsoft Office improperly validates input before loading dynamic lin...
CVE-2020-1456MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1454MEDIUM5.4This vulnerability is caused when SharePoint Server does not properly sanitize a specially crafted request to an affecte...
CVE-2020-1451MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1450MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-1449HIGH7.8A remote code execution vulnerability exists in Microsoft Project software when the software fails to check the source m...
CVE-2020-1448HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1447HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1446HIGH8.8A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memo...
CVE-2020-1445MEDIUM5.5An information disclosure vulnerability exists when Microsoft Office improperly discloses the contents of its memory, ak...
CVE-2020-1444MEDIUM4.3A remote code execution vulnerability exists in the way Microsoft SharePoint software parses specially crafted email mes...
CVE-2020-1443MEDIUM5.4A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web requ...
CVE-2020-1442MEDIUM6.1A spoofing vulnerability exists when an Office Web Apps server does not properly sanitize a specially crafted request, a...
CVE-2020-1439HIGH8.8A remote code execution vulnerability exists in PerformancePoint Services for SharePoint Server when the software fails ...
CVE-2020-1438HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Connections Service handles objects i...
CVE-2020-1437HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Network Location Awareness Service handles ob...
CVE-2020-1436HIGH8.8A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted fonts.Fo...
CVE-2020-1435HIGH8.8A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects...
CVE-2020-1434MEDIUM5.3An elevation of privilege vulnerability exists in the way that the Windows Sync Host Service handles objects in memory, ...
CVE-2020-1433MEDIUM6.5An information disclosure vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka ...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now