2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-35113 | MEDIUM | 6.8 | 0.1% | Sep 2, 2022 | Possible authentication bypass due to improper order of signature verification and hashing in the signature verification... |
| CVE-2021-35109 | MEDIUM | 6.8 | 0.2% | Sep 2, 2022 | Possible address manipulation from APP-NS while APP-S is configuring an RG where it tries to merge the address ranges in... |
| CVE-2021-35108 | MEDIUM | 6.8 | 0.2% | Sep 2, 2022 | Improper checking of AP-S lock bit while verifying the secure resource group permissions can lead to non secure read and... |
| CVE-2021-35097 | MEDIUM | 6.8 | 0.2% | Sep 2, 2022 | Possible authentication bypass due to improper order of signature verification and hashing in the signature verification... |
| CVE-2021-25657 | HIGH | 7.8 | 0.2% | Sep 2, 2022 | A privilege escalation vulnerability was discovered in Avaya IP Office Admin Lite and USB Creator that may potentially a... |
| CVE-2021-3826 | MEDIUM | 6.5 | 1.1% | Sep 1, 2022 | Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially caus... |
| CVE-2021-39045 | MEDIUM | 5.5 | 0.2% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomple... |
| CVE-2021-39009 | MEDIUM | 5.5 | 0.2% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local... |
| CVE-2021-29823 | MEDIUM | 6.5 | 0.3% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke... |
| CVE-2021-20468 | MEDIUM | 6.5 | 0.3% | Sep 1, 2022 | IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 is vulnerable to cross-site request forgery which could allow an attacke... |
| CVE-2021-45027 | HIGH | 7.5 | 1.6% | Sep 1, 2022 | An arbitrary file download vulnerability in Oliver v5 Library Server Versions < 5.00.008.053 via the FileServlet functio... |
| CVE-2021-29864 | MEDIUM | 6.1 | 0.4% | Aug 30, 2022 | IBM Security Identity Manager 6.0 and 6.0.2 could allow a remote attacker to conduct phishing attacks, using an open red... |
| CVE-2021-46837 | MEDIUM | 6.5 | 1.8% | Aug 30, 2022 | res_pjsip_t38 in Sangoma Asterisk 16.x before 16.16.2, 17.x before 17.9.3, and 18.x before 18.2.2, and Certified Asteris... |
| CVE-2021-38934 | MEDIUM | 5.4 | 0.4% | Aug 29, 2022 | IBM Engineering Test Management 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows u... |
| CVE-2021-41785 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41784 | HIGH | 7.8 | 0.7% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41783 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41782 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41781 | HIGH | 7.8 | 1.3% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-41780 | HIGH | 7.8 | 0.5% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, allow attackers to trigger a use-... |
| CVE-2021-40326 | MEDIUM | 5.5 | 0.2% | Aug 29, 2022 | Foxit PDF Reader before 11.1 and PDF Editor before 11.1, and PhantomPDF before 10.1.6, mishandle hidden and incremental ... |
| CVE-2021-4216 | MEDIUM | 5.5 | 0.2% | Aug 26, 2022 | A Floating point exception (division-by-zero) flaw was found in Mupdf for zero width pages in muraster.c. It is fixed in... |
| CVE-2021-4215 | — | — | — | Aug 26, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-3913 | — | — | — | Aug 26, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-3864 | HIGH | 7 | 0.7% | Aug 26, 2022 | A flaw was found in the way the dumpable flag setting was handled when certain SUID binaries executed its descendants. T... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now