2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-20156MEDIUM6.5Trendnet AC2600 TEW-827DRU version 2.08B01 contains an improper access control configuration that could allow for a mali...
CVE-2021-20153MEDIUM6.8Trendnet AC2600 TEW-827DRU version 2.08B01 contains a symlink vulnerability in the bittorrent functionality. If enabled,...
CVE-2021-20152MEDIUM6.5Trendnet AC2600 TEW-827DRU version 2.08B01 lacks proper authentication to the bittorrent functionality. If enabled, anyo...
CVE-2021-20150MEDIUM5.3Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authe...
CVE-2021-20133MEDIUM6.1Quagga Services on D-Link DIR-2640 less than or equal to version 1.11B02 are affected by an absolute path traversal vuln...
CVE-2021-38876MEDIUM6.1IBM i 7.2, 7.3, and 7.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaSc...
CVE-2021-43862MEDIUM5.4jQuery Terminal Emulator is a plugin for creating command line interpreters in your applications. Versions prior to 2.31...
CVE-2021-43861MEDIUM5.4Mermaid is a Javascript based diagramming and charting tool that uses Markdown-inspired text definitions and a renderer ...
CVE-2021-45818MEDIUM6.1SAFARI Montage 8.7.32 is affected by a CRLF injection vulnerability which can lead to HTTP response splitting.
CVE-2021-45815MEDIUM6.1Quectel UC20 UMTS/HSPA+ UC20 6.3.14 is affected by a Cross Site Scripting (XSS) vulnerability.
CVE-2021-36724MEDIUM5.5ForeScout - SecureConnector Local Service DoS - A low privilaged user which doesn't have permissions to shutdown the sec...
CVE-2021-25993MEDIUM5.4In Requarks wiki.js, versions 2.0.0-beta.147 to 2.5.255 are affected by Stored XSS vulnerability, where a low privileged...
CVE-2021-4176MEDIUM6.1livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4175MEDIUM5.4livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-38680MEDIUM6.1A cross-site scripting (XSS) vulnerability has been reported to affect QNAP device running Kazoo Server. If exploited, t...
CVE-2021-35035MEDIUM6.5A cleartext storage of sensitive information vulnerability in the Zyxel NBG6604 firmware could allow a remote, authentic...
CVE-2021-25990MEDIUM5.4In “ifme”, versions v7.22.0 to v7.31.4 are vulnerable against self-stored XSS in the contacts field as it allows loading...
CVE-2021-25989MEDIUM5.4In “ifme”, versions 1.0.0 to v7.31.4 are vulnerable against stored XSS vulnerability in the markdown editor. It can be e...
CVE-2021-25988MEDIUM5.4In “ifme”, versions 1.0.0 to v7.31.4 are vulnerable against stored XSS vulnerability (notifications section) which can b...
CVE-2021-44832MEDIUM6.6Apache Log4j2 versions 2.0-beta7 through 2.17.0 (excluding security fix releases 2.3.2 and 2.12.4) are vulnerable to a r...
CVE-2021-45813MEDIUM6.1SLICAN WebCTI 1.01 2015 is affected by a Cross Site Scripting (XSS) vulnerability. The attacker can steal the user's ses...
CVE-2021-45812MEDIUM6.1NUUO Network Video Recorder NVRsolo 3.9.1 is affected by a Cross Site Scripting (XSS) vulnerability. An attacker can ste...
CVE-2021-45903MEDIUM6.1A persistent cross-site scripting (XSS) issue in the web interface of SuiteCRM before 7.10.35, and 7.11.x and 7.12.x bef...
CVE-2021-45425MEDIUM6.1Reflected Cross Site Scripting (XSS) in SAFARI Montage versions 8.3 and 8.5 allows remote attackers to execute JavaScrip...
CVE-2021-40579MEDIUM6.5https://www.sourcecodester.com/ Online Enrollment Management System in PHP and PayPal Free Source Code 1.0 is affected b...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now