2020 CVE Vulnerabilities

21,074 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-1349HIGH7.8A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in m...
CVE-2020-1347HIGH7.8An elevation of privilege vulnerability exists when the Windows Storage Services improperly handle file operations, aka ...
CVE-2020-1346HIGH7.8An elevation of privilege vulnerability exists when the Windows Modules Installer improperly handles file operations, ak...
CVE-2020-1344HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows WalletService handles objects in memory, aka ...
CVE-2020-1342MEDIUM5.5An information disclosure vulnerability exists when Microsoft Office software reads out of bound memory due to an uninit...
CVE-2020-1336HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory. An attacker...
CVE-2020-1333MEDIUM6.7An elevation of privilege vulnerability exists when Group Policy Services Policy Processing improperly handle reparse po...
CVE-2020-1330MEDIUM5.5An information disclosure vulnerability exists when Windows Mobile Device Management (MDM) Diagnostics improperly handle...
CVE-2020-1326MEDIUM5.4A Cross-site Scripting (XSS) vulnerability exists when Azure DevOps Server does not properly sanitize user provided inpu...
CVE-2020-1267MEDIUM4.9This security update corrects a denial of service in the Local Security Authority Subsystem Service (LSASS) caused when ...
CVE-2020-1249HIGH7.8An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windo...
CVE-2020-1240HIGH8.8A remote code execution vulnerability exists in Microsoft Excel software when the software fails to properly handle obje...
CVE-2020-1147HIGH7.8A remote code execution vulnerability exists in .NET Framework, Microsoft SharePoint, and Visual Studio when the softwar...
CVE-2020-1085HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in...
CVE-2020-1043CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1042CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1041CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1040CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1036CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1032CRITICAL9A remote code execution vulnerability exists when Hyper-V RemoteFX vGPU on a host server fails to properly validate inpu...
CVE-2020-1025CRITICAL9.8An elevation of privilege vulnerability exists when Microsoft SharePoint Server and Skype for Business Server improperly...
CVE-2020-15104MEDIUM5.4In Envoy before versions 1.12.6, 1.13.4, 1.14.4, and 1.15.0 when validating TLS certificates, Envoy would incorrectly al...
CVE-2020-15101LOW3.3In freewvs before 0.1.1, a directory structure of more than 1000 nested directories can interrupt a freewvs scan due to ...
CVE-2020-11084MEDIUM5.4In iPear, the manual execution of the eval() function can lead to command injection. Only PCs where commands are manuall...
CVE-2020-5246MEDIUM6.5Traccar GPS Tracking System before version 4.9 has a LDAP injection vulnerability. It occurs when user input is being us...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now