2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40116 | HIGH | 7.5 | 1.3% | Oct 27, 2021 | Multiple Cisco products are affected by a vulnerability in Snort rules that could allow an unauthenticated, remote attac... |
| CVE-2021-40114 | HIGH | 7.5 | 2.4% | Oct 27, 2021 | Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine processes ICMP traffic tha... |
| CVE-2021-34793 | HIGH | 8.6 | 0.6% | Oct 27, 2021 | A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (... |
| CVE-2021-34792 | HIGH | 7.5 | 1.4% | Oct 27, 2021 | A vulnerability in the memory management of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defens... |
| CVE-2021-34783 | HIGH | 7.5 | 1.6% | Oct 27, 2021 | A vulnerability in the software-based SSL/TLS message handler of Cisco Adaptive Security Appliance (ASA) Software and Fi... |
| CVE-2021-34781 | HIGH | 7.5 | 1.3% | Oct 27, 2021 | A vulnerability in the processing of SSH connections for multi-instance deployments of Cisco Firepower Threat Defense (F... |
| CVE-2021-34762 | HIGH | 8.1 | 1.9% | Oct 27, 2021 | A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an... |
| CVE-2021-34756 | HIGH | 7.8 | 0.3% | Oct 27, 2021 | Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local... |
| CVE-2021-34755 | HIGH | 7.8 | 0.3% | Oct 27, 2021 | Multiple vulnerabilities in the CLI of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local... |
| CVE-2021-34754 | HIGH | 7.5 | 1.0% | Oct 27, 2021 | Multiple vulnerabilities in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower T... |
| CVE-2021-37807 | HIGH | 7.5 | 1.5% | Oct 27, 2021 | An SQL Injection vulneraility exists in https://phpgurukul.com Online Shopping Portal 3.1 via the email parameter on the... |
| CVE-2021-37803 | HIGH | 8.1 | 1.6% | Oct 27, 2021 | An SQL Injection vulnerability exists in Sourcecodester Online Covid Vaccination Scheduler System 1.0 via the username i... |
| CVE-2021-29844 | HIGH | 8.8 | 0.6% | Oct 27, 2021 | IBM Jazz Team Server products is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attac... |
| CVE-2021-29774 | HIGH | 7.5 | 0.9% | Oct 27, 2021 | IBM Jazz Team Server products could allow an authenticated user to obtain elevated privileges under certain configuratio... |
| CVE-2021-37221 | HIGH | 8.8 | 1.1% | Oct 27, 2021 | A file upload vulnerability exists in Sourcecodester Customer Relationship Management System 1.0 via the account update ... |
| CVE-2021-22101 | HIGH | 7.5 | 1.0% | Oct 27, 2021 | Cloud Controller versions prior to 1.118.0 are vulnerable to unauthenticated denial of Service(DoS) vulnerability allowi... |
| CVE-2021-41619 | HIGH | 7.2 | 2.6% | Oct 27, 2021 | An issue was discovered in Gradle Enterprise before 2021.1.2. There is potential remote code execution via the applicati... |
| CVE-2021-41872 | HIGH | 7.5 | 1.2% | Oct 27, 2021 | Skyworth Digital Technology Penguin Aurora Box 41502 has a denial of service vulnerability, which can be exploited by at... |
| CVE-2021-34580 | HIGH | 7.5 | 1.0% | Oct 27, 2021 | In mymbCONNECT24, mbCONNECT24 <= 2.9.0 an unauthenticated user can enumerate valid backend users by checking what kind o... |
| CVE-2021-38450 | HIGH | 8.8 | 1.0% | Oct 27, 2021 | The affected controllers do not properly sanitize the input containing code syntax. As a result, an attacker could craft... |
| CVE-2021-37130 | HIGH | 7.5 | 0.8% | Oct 27, 2021 | There is a path traversal vulnerability in Huawei FusionCube 6.0.2.The vulnerability is due to that the software uses ex... |
| CVE-2021-37129 | HIGH | 7.5 | 0.7% | Oct 27, 2021 | There is an out of bounds write vulnerability in some Huawei products. The vulnerability is caused by a function of a mo... |
| CVE-2021-37127 | HIGH | 7.2 | 0.7% | Oct 27, 2021 | There is a signature management vulnerability in some huawei products. An attacker can forge signature and bypass the si... |
| CVE-2021-26610 | HIGH | 8.8 | 0.4% | Oct 27, 2021 | The move_uploaded_file function in godomall5 does not perform an integrity check of extension or authority when user upl... |
| CVE-2021-23877 | HIGH | 7.8 | 0.4% | Oct 26, 2021 | Privilege escalation vulnerability in the Windows trial installer of McAfee Total Protection (MTP) prior to 16.0.34_x ma... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now