2020 CVE Vulnerabilities

21,075 CVEs published in 2020.

CVE IDSeverityCVSSDescription
CVE-2020-0695MEDIUM5.4A spoofing vulnerability exists when Office Online Server does not validate origin in cross-origin communications correc...
CVE-2020-0694MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-0693MEDIUM5.4A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a speciall...
CVE-2020-0692HIGH8.1An elevation of privilege vulnerability exists in Microsoft Exchange Server, aka 'Microsoft Exchange Server Elevation of...
CVE-2020-0691HIGH7.8An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle o...
CVE-2020-0689MEDIUM6.7A security feature bypass vulnerability exists in secure boot, aka 'Microsoft Secure Boot Security Feature Bypass Vulner...
CVE-2020-0688HIGH8.8A remote code execution vulnerability exists in Microsoft Exchange software when the software fails to properly handle o...
CVE-2020-0686HIGH7.8An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'W...
CVE-2020-0685HIGH7.8An elevation of privilege vulnerability exists when Windows improperly handles COM object creation, aka 'Windows COM Ser...
CVE-2020-0683HIGH7.8An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'W...
CVE-2020-0682HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in...
CVE-2020-0681HIGH7.5A remote code execution vulnerability exists in the Windows Remote Desktop Client when a user connects to a malicious se...
CVE-2020-0680HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in...
CVE-2020-0679HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Function Discovery Service handles objects in...
CVE-2020-0678HIGH7.8An elevation of privilege vulnerability exists when Windows Error Reporting manager improperly handles hard links, aka '...
CVE-2020-0677MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0676MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0675MEDIUM5.5An information disclosure vulnerability exists in the Cryptography Next Generation (CNG) service when it fails to proper...
CVE-2020-0674HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2020-0673HIGH7.5A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet ...
CVE-2020-0672HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '...
CVE-2020-0671HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '...
CVE-2020-0670HIGH7.8An elevation of privilege vulnerability exists when the Windows kernel fails to properly handle objects in memory, aka '...
CVE-2020-0669HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Window...
CVE-2020-0668HIGH7.8An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Window...

Check if your code is affected by 2020 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now