2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-47775HIGH8.4YouTube Video Grabber, now referred to as YouTube Downloader, 1.9.9.1 contains a buffer overflow vulnerability that allo...
CVE-2021-47774CRITICAL9.8Kingdia CD Extractor 3.0.2 contains a buffer overflow vulnerability in the registration name field that allows attackers...
CVE-2021-47773HIGH8.5Dynojet Power Core 2.3.0 contains an unquoted service path vulnerability in the DJ.UpdateService that allows local authe...
CVE-2021-47772CRITICAL9.810-Strike Network Inventory Explorer Pro 9.31 contains a buffer overflow vulnerability in the text file import functiona...
CVE-2021-47771MEDIUM6.8RDP Manager 4.9.9.3 contains a denial of service vulnerability in connection input fields that allows local attackers to...
CVE-2021-47769MEDIUM5.1Isshue Shopping Cart 3.5 contains a persistent cross-site scripting vulnerability in title input fields across stock, cu...
CVE-2021-47768MEDIUM6.1ImportExportTools NG 10.0.4 contains a persistent HTML injection vulnerability in the email export module that allows re...
CVE-2021-47767HIGH8.510-Strike Network Inventory Explorer Pro 9.31 contains an unquoted service path vulnerability in the srvInventoryWebServ...
CVE-2021-47766HIGH7.1Kmaleon 1.1.0.205 contains an authenticated SQL injection vulnerability in the 'tipocomb' parameter of kmaleonW.php that...
CVE-2021-47765MEDIUM6.7AbsoluteTelnet 11.24 contains a denial of service vulnerability that allows local attackers to crash the application by ...
CVE-2021-47764MEDIUM6.7AbsoluteTelnet 11.24 contains a denial of service vulnerability that allows local attackers to crash the application by ...
CVE-2021-47763HIGH8.8Aimeos 2021.10 LTS contains a SQL injection vulnerability in the json api 'sort' parameter that allows attackers to inje...
CVE-2021-47762HIGH8.5HTTPDebuggerPro 9.11 contains an unquoted service path vulnerability that allows local attackers to potentially execute ...
CVE-2021-47761HIGH8.5MilleGPG5 5.7.2 contains a local privilege escalation vulnerability that allows authenticated users to modify service ex...
CVE-2021-47760Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as a duplicate.
CVE-2021-47759MEDIUM6.8MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH conne...
CVE-2021-47758HIGH8.8Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability that allows attac...
CVE-2021-47757HIGH8.8Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability in the backup res...
CVE-2021-47755HIGH8.7Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrar...
CVE-2021-47754MEDIUM6.9Arunna 1.0.0 contains a cross-site request forgery vulnerability that allows attackers to manipulate user profile settin...
CVE-2021-47753CRITICAL9.8phpKF CMS 3.00 Beta y6 contains an unauthenticated file upload vulnerability that allows remote attackers to execute arb...
CVE-2021-47752HIGH8.7AWebServer GhostBuilding 18 contains a denial of service vulnerability that allows remote attackers to overwhelm the ser...
CVE-2021-47751HIGH7.5CuteEditor for PHP (now referred to as Rich Text Editor) 6.6 contains a directory traversal vulnerability in the browse ...
CVE-2021-47750MEDIUM6.1YouPHPTube <= 7.8 contains a cross-site scripting vulnerability that allows attackers to inject malicious scripts throug...
CVE-2021-47749HIGH8.7YouPHPTube <= 7.8 contains a local file inclusion vulnerability that allows unauthenticated attackers to access arbitrar...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now