2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21924 | MEDIUM | 6.5 | 20.2% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21923 | MEDIUM | 4.9 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21922 | MEDIUM | 6.5 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21921 | MEDIUM | 4.9 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21920 | MEDIUM | 4.9 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21919 | MEDIUM | 4.9 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21918 | MEDIUM | 4.9 | 1.1% | Dec 22, 2021 | A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger ... |
| CVE-2021-21908 | MEDIUM | 6.5 | 1.4% | Dec 22, 2021 | Specially-crafted command line arguments can lead to arbitrary file deletion. The handle_delete function does not attemp... |
| CVE-2021-21907 | MEDIUM | 4.9 | 1.4% | Dec 22, 2021 | A directory traversal vulnerability exists in the CMA CLI getenv command functionality of Garrett Metal Detectors’ iC Mo... |
| CVE-2021-21896 | MEDIUM | 6.5 | 2.2% | Dec 22, 2021 | A directory traversal vulnerability exists in the Web Manager FsBrowseClean functionality of Lantronix PremierWave 2050 ... |
| CVE-2021-21886 | MEDIUM | 4.3 | 1.9% | Dec 22, 2021 | A directory traversal vulnerability exists in the Web Manager FSBrowsePage functionality of Lantronix PremierWave 2050 8... |
| CVE-2021-21878 | MEDIUM | 4.9 | 1.2% | Dec 22, 2021 | A local file inclusion vulnerability exists in the Web Manager Applications and FsBrowse functionality of Lantronix Prem... |
| CVE-2021-45267 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | An invalid memory address dereference vulnerability exists in gpac 1.1.0 via the svg_node_start function, which causes a... |
| CVE-2021-45263 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | An invalid free vulnerability exists in gpac 1.1.0 via the gf_svg_delete_attribute_value function, which causes a segmen... |
| CVE-2021-45262 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | An invalid free vulnerability exists in gpac 1.1.0 via the gf_sg_command_del function, which causes a segmentation fault... |
| CVE-2021-45261 | MEDIUM | 5.5 | 0.7% | Dec 22, 2021 | An Invalid Pointer vulnerability exists in GNU patch 2.7 via the another_hunk function, which causes a Denial of Service... |
| CVE-2021-45260 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | A null pointer dereference vulnerability exists in gpac 1.1.0 in the lsr_read_id.part function, which causes a segmentat... |
| CVE-2021-43158 | MEDIUM | 4.3 | 0.5% | Dec 22, 2021 | In ProjectWorlds Online Shopping System PHP 1.0, a CSRF vulnerability in cart_remove.php allows a remote attacker to rem... |
| CVE-2021-43156 | MEDIUM | 6.5 | 0.5% | Dec 22, 2021 | In ProjectWorlds Online Book Store PHP 1.0 a CSRF vulnerability in admin_delete.php allows a remote attacker to delete a... |
| CVE-2021-45259 | MEDIUM | 5.5 | 0.7% | Dec 22, 2021 | An Invalid pointer reference vulnerability exists in gpac 1.1.0 via the gf_svg_node_del function, which causes a segment... |
| CVE-2021-45258 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | A stack overflow vulnerability exists in gpac 1.1.0 via the gf_bifs_dec_proto_list function, which causes a segmentation... |
| CVE-2021-45257 | MEDIUM | 5.5 | 0.7% | Dec 22, 2021 | An infinite loop vulnerability exists in nasm 2.16rc0 via the gpaste_tokens function. |
| CVE-2021-45256 | MEDIUM | 5.5 | 0.6% | Dec 22, 2021 | A Null Pointer Dereference vulnerability existfs in nasm 2.16rc0 via asm/preproc.c. |
| CVE-2021-39013 | MEDIUM | 6.5 | 0.8% | Dec 22, 2021 | IBM Cloud Pak for Security (CP4S) 1.7.2.0, 1.7.1.0, and 1.7.0.0 could allow an authenticated user to obtain sensitive in... |
| CVE-2021-40836 | MEDIUM | 5.5 | 0.5% | Dec 22, 2021 | A vulnerability affecting F-Secure antivirus engine was discovered whereby scanning MS outlook .pst files can lead to de... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now