2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-41366HIGH7.8Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability
CVE-2021-41356HIGH7.5Windows Denial of Service Vulnerability
CVE-2021-40442HIGH7.8Microsoft Excel Remote Code Execution Vulnerability
CVE-2021-38666HIGH8.8Remote Desktop Client Remote Code Execution Vulnerability
CVE-2021-38665HIGH7.4Remote Desktop Protocol Client Information Disclosure Vulnerability
CVE-2021-36957HIGH7.8Windows Desktop Bridge Elevation of Privilege Vulnerability
CVE-2021-37158HIGH8.8An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. An authenticated attacker could inject OS c...
CVE-2021-37157HIGH8.8An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. $HOME/OGP/Cfg/Config.pm has the root passwo...
CVE-2021-20119HIGH7.1The password change utility for the Arris SurfBoard SB8200 can have safety measures bypassed that allow any logged-in us...
CVE-2021-43174HIGH7.5NLnet Labs Routinator versions 0.9.0 up to and including 0.10.1, support the gzip transfer encoding when querying RRDP r...
CVE-2021-43173HIGH7.5In NLnet Labs Routinator prior to 0.10.2, a validation run can be delayed significantly by an RRDP repository by not ans...
CVE-2021-43172HIGH7.5NLnet Labs Routinator prior to 0.10.2 happily processes a chain of RRDP repositories of infinite length causing it to ne...
CVE-2021-43182HIGH7.5In JetBrains Hub before 2021.1.13415, a DoS via user information is possible.
CVE-2021-43180HIGH7.5In JetBrains Hub before 2021.1.13690, information disclosure via avatar metadata is possible.
CVE-2021-43203HIGH7.5In JetBrains Ktor before 1.6.4, nonce verification during the OAuth2 authentication process is implemented improperly.
CVE-2021-43196HIGH7.5In JetBrains TeamCity before 2021.1, information disclosure via the Docker Registry connection dialog is possible.
CVE-2021-43189HIGH7.3In JetBrains YouTrack Mobile before 2021.2, access token protection on Android is incomplete.
CVE-2021-43188HIGH7.3In JetBrains YouTrack Mobile before 2021.2, access token protection on iOS is incomplete.
CVE-2021-43114HIGH7.5FORT Validator versions prior to 1.5.2 will crash if an RPKI CA publishes an X.509 EE certificate. This will lead to RTR...
CVE-2021-42021HIGH7.5A vulnerability has been identified in Siveillance Video DLNA Server (2019 R1), Siveillance Video DLNA Server (2019 R2),...
CVE-2021-40366HIGH7.4A vulnerability has been identified in Climatix POL909 (AWB module) (All versions < V11.42), Climatix POL909 (AWM module...
CVE-2021-40359HIGH7.7A vulnerability has been identified in OpenPCS 7 V8.2 (All versions), OpenPCS 7 V9.0 (All versions < V9.0 Upd4), OpenPCS...
CVE-2021-37207HIGH7.8A vulnerability has been identified in SENTRON powermanager V3 (All versions). The affected application assigns improper...
CVE-2021-31888HIGH8.8A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All ver...
CVE-2021-31887HIGH8.8A vulnerability has been identified in APOGEE MBC (PPC) (BACnet) (All versions), APOGEE MBC (PPC) (P2 Ethernet) (All ver...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now