2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-32497HIGH8.6SICK SOPAS ET before version 4.8.0 allows attackers to wrap any executable file into an SDD and provide this to a SOPAS ...
CVE-2021-22054HIGH7.5VMware Workspace ONE UEM console 20.0.8 prior to 20.0.8.37, 20.11.0 prior to 20.11.0.40, 21.2.0 prior to 21.2.0.27, and ...
CVE-2021-20608HIGH7.5Improper Handling of Length Parameter Inconsistency vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and p...
CVE-2021-0673HIGH7.8In Audio Aurisys HAL, there is a possible permission bypass due to a missing permission check. This could lead to local ...
CVE-2021-44035HIGH7.8Wolters Kluwer TeamMate AM 12.4 Update 1 mishandles attachment uploads, such that an authenticated user may download and...
CVE-2021-41451HIGH7.5A misconfiguration in HTTP/1.0 and HTTP/1.1 of the web interface in TP-Link AX10v1 before V1_211117 allows a remote unau...
CVE-2021-36780HIGH8.1A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to...
CVE-2021-44315HIGH7.5In Bus Pass Management System v1.0, Directory Listing/Browsing is enabled on the web server which allows an attacker to ...
CVE-2021-41262HIGH8.8Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions...
CVE-2021-41028HIGH7.5A combination of a use of hard-coded cryptographic key vulnerability [CWE-321] in FortiClientEMS 7.0.1 and below, 6.4.6 ...
CVE-2021-38244HIGH7.5A regular expression denial of service (ReDoS) vulnerability exits in cbioportal 3.6.21 and older via a POST request to ...
CVE-2021-37262HIGH7.5JFinal_cms 5.1.0 is vulnerable to regex injection that may lead to Denial of Service.
CVE-2021-41260HIGH8.8Galette is a membership management web application built for non profit organizations and released under GPLv3. Versions...
CVE-2021-42912HIGH8.8FiberHome ONU GPON AN5506-04-F RP2617 is affected by an OS command injection vulnerability. This vulnerability allows th...
CVE-2021-3960HIGH7.8Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the UpdateServer compone...
CVE-2021-3959HIGH7.5A Server-Side Request Forgery (SSRF) vulnerability in the EPPUpdateService component of Bitdefender Endpoint Security To...
CVE-2021-45102HIGH8.8An issue was discovered in HTCondor 9.0.x before 9.0.4 and 9.1.x before 9.1.2. When authenticating to an HTCondor daemon...
CVE-2021-45101HIGH8.1An issue was discovered in HTCondor before 8.8.15, 9.0.x before 9.0.4, and 9.1.x before 9.1.2. Using standard command-li...
CVE-2021-45100HIGH7.5The ksmbd server through 3.4.2, as used in the Linux kernel through 5.15.8, sometimes communicates in cleartext even tho...
CVE-2021-45099HIGH8.8The addon.stdin service in addon-ssh (aka Home Assistant Community Add-on: SSH & Web Terminal) before 10.0.0 has an atta...
CVE-2021-45098HIGH7.5An issue was discovered in Suricata before 6.0.4. It is possible to bypass/evade any HTTP-based signature by faking an R...
CVE-2021-44023HIGH7.1A link following denial-of-service (DoS) vulnerability in the Trend Micro Security (Consumer) 2021 familiy of products c...
CVE-2021-43833HIGH8.8eLabFTW is an electronic lab notebook manager for research teams. In versions prior to 4.2.0 there is a vulnerability wh...
CVE-2021-45017HIGH8.8Cross Site Request Forgery (CSRF) vulnerability exits in Catfish <=6.1.* when you upload an html file containing CSRF on...
CVE-2021-45078HIGH7.8stab_xcoff_builtin_type in stabs.c in GNU Binutils through 2.37 allows attackers to cause a denial of service (heap-base...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now