2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40241 | CRITICAL | 9.8 | 1.0% | Oct 31, 2022 | xfig 3.2.7 is vulnerable to Buffer Overflow. |
| CVE-2021-40661 | HIGH | 7.5 | 4.6% | Oct 31, 2022 | A remote, unauthenticated, directory traversal vulnerability was identified within the web interface used by IND780 Adva... |
| CVE-2021-42777 | CRITICAL | 9.8 | 1.0% | Oct 29, 2022 | Stimulsoft (aka Stimulsoft Reports) 2013.1.1600.0, when Compilation Mode is used, allows an attacker to execute arbitrar... |
| CVE-2021-36898 | HIGH | 7.2 | 0.8% | Oct 28, 2022 | Auth. SQL Injection (SQLi) vulnerability in Quiz And Survey Master plugin <= 7.3.4 on WordPress. |
| CVE-2021-36864 | MEDIUM | 5.4 | 0.4% | Oct 28, 2022 | Auth. (editor+) Reflected Cross-Site Scripting (XSS) vulnerability in ExpressTech Quiz And Survey Master plugin <= 7.3.4... |
| CVE-2021-38733 | CRITICAL | 9.8 | 0.6% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php. |
| CVE-2021-38732 | CRITICAL | 9.8 | 0.7% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php. |
| CVE-2021-38731 | CRITICAL | 9.8 | 0.6% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php. |
| CVE-2021-38730 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php. |
| CVE-2021-38729 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php. |
| CVE-2021-38728 | MEDIUM | 6.1 | 0.4% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to Cross Site Scripting (XSS) via Ant_M_Coup.php. |
| CVE-2021-38217 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS v 1.2 is vulnerable to SQL Injection via SEMCMS_User.php. |
| CVE-2021-36863 | MEDIUM | 5.4 | 0.4% | Oct 28, 2022 | Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in ExpressTech Quiz And Survey Master plugin <= 7.3... |
| CVE-2021-36858 | MEDIUM | 4.8 | 0.4% | Oct 28, 2022 | Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Themepoints Testimonials plugin <= 2.6 on WordPress. |
| CVE-2021-38737 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS v 1.1 is vulnerable to SQL Injection via Ant_Pro.php. |
| CVE-2021-38736 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php. |
| CVE-2021-38734 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php. |
| CVE-2021-37782 | CRITICAL | 9.8 | 0.8% | Oct 28, 2022 | Employee Record Management System v 1.2 is vulnerable to SQL Injection via editempprofile.php. |
| CVE-2021-37781 | MEDIUM | 5.4 | 0.4% | Oct 28, 2022 | Employee Record Management System v 1.2 is vulnerable to Cross Site Scripting (XSS) via editempprofile.php. |
| CVE-2021-35388 | MEDIUM | 5.4 | 0.4% | Oct 28, 2022 | Hospital Management System v 4.0 is vulnerable to Cross Site Scripting (XSS) via /hospital/hms/admin/patient-search.php. |
| CVE-2021-35387 | HIGH | 8.8 | 0.8% | Oct 28, 2022 | Hospital Management System v 4.0 is vulnerable to SQL Injection via file:hospital/hms/admin/view-patient.php. |
| CVE-2021-38399 | HIGH | 7.5 | 0.7% | Oct 28, 2022 | Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to relative path traversal, which may allow... |
| CVE-2021-38397 | CRITICAL | 10 | 0.9% | Oct 28, 2022 | Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to unrestricted file uploads, which may all... |
| CVE-2021-38395 | CRITICAL | 9.8 | 0.9% | Oct 28, 2022 | Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to improper neutralization of special eleme... |
| CVE-2021-36206 | MEDIUM | 6.1 | 0.4% | Oct 28, 2022 | All versions of CEVAS prior to 1.01.46 do not sufficiently validate user-controllable input and could allow a user to by... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now