2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-35113MEDIUM6.8Possible authentication bypass due to improper order of signature verification and hashing in the signature verification...
CVE-2021-35109MEDIUM6.8Possible address manipulation from APP-NS while APP-S is configuring an RG where it tries to merge the address ranges in...
CVE-2021-35108MEDIUM6.8Improper checking of AP-S lock bit while verifying the secure resource group permissions can lead to non secure read and...
CVE-2021-35097MEDIUM6.8Possible authentication bypass due to improper order of signature verification and hashing in the signature verification...
CVE-2021-25657HIGH7.8A privilege escalation vulnerability was discovered in Avaya IP Office Admin Lite and USB Creator that may potentially a...
CVE-2021-3826MEDIUM6.5Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially caus...
CVE-2021-39045MEDIUM5.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomple...
CVE-2021-39009MEDIUM5.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local...
CVE-2021-29823MEDIUM6.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke...
CVE-2021-20468MEDIUM6.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke...
CVE-2021-45027HIGH7.5An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via the FileServlet functio...
CVE-2021-29864MEDIUM6.1IBM Security Identity Manager 6.0 and 6.0.2 could allow a remote attacker to conduct phishing attacks, using an open red...
CVE-2021-46837MEDIUM6.5res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 18.x before 18.2.2, and Certified Asteris...
CVE-2021-38934MEDIUM5.4IBM Engineering Test Management 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows u...
CVE-2021-41785HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-41784HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-41783HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-41782HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-41781HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-41780HIGH7.8Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-...
CVE-2021-40326MEDIUM5.5Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental ...
CVE-2021-4216MEDIUM5.5A Floating point exception (division-by-zero) flaw was found in Mupdf for zero width pages in muraster.c. It is fixed in...
CVE-2021-4215Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-3913Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-3864HIGH7A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries executed its descendants. T...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now