2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-38983 | HIGH | 7.5 | 0.9% | Nov 15, 2021 | IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses weaker than expected cryptographic algorithms that could ... |
| CVE-2021-38979 | HIGH | 7.5 | 0.7% | Nov 15, 2021 | IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 uses a one-way cryptographic hash against an input that should... |
| CVE-2021-34992 | HIGH | 8.8 | 4.1% | Nov 15, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Orckestra C1 CMS 6.10.... |
| CVE-2021-34991 | HIGH | 8.8 | 5.7% | Nov 15, 2021 | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R640... |
| CVE-2021-42706 | HIGH | 7.8 | 0.3% | Nov 15, 2021 | This vulnerability could allow an attacker to disclose information and execute arbitrary code on affected installations ... |
| CVE-2021-43495 | HIGH | 7.5 | 9.1% | Nov 15, 2021 | AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnera... |
| CVE-2021-42839 | HIGH | 8.8 | 2.4% | Nov 15, 2021 | Grand Vice info Co. webopac7 file upload function fails to filter special characters. While logging in with general user... |
| CVE-2021-43620 | HIGH | 7.5 | 1.3% | Nov 15, 2021 | An issue was discovered in the fruity crate through 0.2.0 for Rust. Security-relevant validation of filename extensions ... |
| CVE-2021-43618 | HIGH | 7.5 | 3.4% | Nov 15, 2021 | GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer... |
| CVE-2021-43391 | HIGH | 7.8 | 1.6% | Nov 14, 2021 | An Out-of-Bounds Read vulnerability exists when reading a DXF file using Open Design Alliance Drawings SDK before 2022.1... |
| CVE-2021-43390 | HIGH | 7.8 | 1.6% | Nov 14, 2021 | An Out-of-Bounds Write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022.... |
| CVE-2021-43336 | HIGH | 7.8 | 1.6% | Nov 14, 2021 | An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK befor... |
| CVE-2021-43280 | HIGH | 7.8 | 1.8% | Nov 14, 2021 | A stack-based buffer overflow vulnerability exists in the DWF file reading procedure in Open Design Alliance Drawings SD... |
| CVE-2021-43279 | HIGH | 7.8 | 1.3% | Nov 14, 2021 | An out-of-bounds write vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 202... |
| CVE-2021-43278 | HIGH | 7.8 | 0.8% | Nov 14, 2021 | An Out-of-bounds Read vulnerability exists in the OBJ file reading procedure in Open Design Alliance Drawings SDK before... |
| CVE-2021-43277 | HIGH | 7.8 | 0.8% | Nov 14, 2021 | An out-of-bounds read vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 2022... |
| CVE-2021-43276 | HIGH | 7.8 | 0.8% | Nov 14, 2021 | An Out-of-bounds Read vulnerability exists in Open Design Alliance ODA Viewer before 2022.8. Crafted data in a DWF file ... |
| CVE-2021-43275 | HIGH | 7.8 | 0.9% | Nov 14, 2021 | A Use After Free vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022... |
| CVE-2021-43274 | HIGH | 7.8 | 0.9% | Nov 14, 2021 | A Use After Free Vulnerability exists in the Open Design Alliance Drawings SDK before 2022.11. The specific flaw exists ... |
| CVE-2021-41057 | HIGH | 7.1 | 0.3% | Nov 14, 2021 | In WIBU CodeMeter Runtime before 7.30a, creating a crafted CmDongles symbolic link will overwrite the linked file withou... |
| CVE-2021-26795 | HIGH | 8.8 | 1.5% | Nov 14, 2021 | A SQL Injection vulnerability in /appliance/shiftmgn.php in TalariaX sendQuick Alert Plus Server Admin 4.3 before 8HF11 ... |
| CVE-2021-21528 | HIGH | 7.5 | 1.0% | Nov 12, 2021 | Dell EMC PowerScale OneFS versions 9.1.0, 9.2.0.x, 9.2.1.x contain an Exposure of Information through Directory Listing ... |
| CVE-2021-43611 | HIGH | 7.5 | 1.2% | Nov 12, 2021 | Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via " \ " in the display name of a From heade... |
| CVE-2021-43610 | HIGH | 7.5 | 1.2% | Nov 12, 2021 | Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via an invalid From header (request URI witho... |
| CVE-2021-3840 | HIGH | 8.8 | 2.0% | Nov 12, 2021 | A dependency confusion vulnerability was reported in the Antilles open-source software prior to version 1.0.1 that could... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now