2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-33730HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker...
CVE-2021-33729HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker that is a...
CVE-2021-33728HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to uploa...
CVE-2021-33726HIGH7.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to downl...
CVE-2021-27395HIGH8.1A vulnerability has been identified in SIMATIC Process Historian 2013 and earlier (All versions), SIMATIC Process Histor...
CVE-2021-42260HIGH7.5TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via the TIXML_UTF_LEAD_0 case...
CVE-2021-42257HIGH7.1check_smart before 6.9.1 allows unintended drive access by an unprivileged user because it only checks for a substring m...
CVE-2021-42252HIGH7.8An issue was discovered in aspeed_lpc_ctrl_mmap in drivers/soc/aspeed/aspeed-lpc-ctrl.c in the Linux kernel before 5.14....
CVE-2021-40189HIGH7.2PHPFusion 9.03.110 is affected by a remote code execution vulnerability. The theme function will extract a file to "webr...
CVE-2021-40188HIGH7.2PHPFusion 9.03.110 is affected by an arbitrary file upload vulnerability. The File Manager function in admin panel does ...
CVE-2021-27002HIGH7.5NetApp Cloud Manager versions prior to 3.9.10 are susceptible to a vulnerability which could allow a remote unauthentica...
CVE-2021-25633HIGH7.5LibreOffice supports digital signatures of ODF documents and macros within documents, presenting visual aids that no alt...
CVE-2021-20122HIGH7.2The Telus Wi-Fi Hub (PRV65B444A-S-TS) with firmware version 3.00.20 is affected by an authenticated command injection vu...
CVE-2021-39317HIGH8.8A WordPress plugin and several WordPress themes developed by AccessPress Themes are vulnerable to malicious file uploads...
CVE-2021-27665HIGH7.5An unauthenticated remote user could exploit a potential integer overflow condition in the exacqVision Server with a spe...
CVE-2021-0583HIGH7.3In onCreate of BluetoothPairingDialog, there is a possible way to enable Bluetooth without user consent due to a tapjack...
CVE-2021-29005HIGH8.8Insecure permission of chmod command on rConfig server 3.9.6 exists. After installing rConfig apache user may execute ch...
CVE-2021-29004HIGH8.8rConfig 3.9.6 is affected by SQL Injection. A user must be authenticated to exploit the vulnerability. If --secure-file-...
CVE-2021-40884HIGH8.1Projectsend version r1295 is affected by sensitive information disclosure. Because of not checking authorization in ids ...
CVE-2021-24711HIGH8.8The del_reistered_domains AJAX action of the Software License Manager WordPress plugin before 4.5.1 does not have any CS...
CVE-2021-24651HIGH7.5The Poll Maker WordPress plugin before 3.4.2 allows unauthenticated users to perform SQL injection via the ays_finish_po...
CVE-2021-24546HIGH8.8The Gutenberg Block Editor Toolkit – EditorsKit WordPress plugin before 1.31.6 does not sanitise and validate the Condit...
CVE-2021-41832HIGH7.5It is possible for an attacker to manipulate documents to appear to be signed by a trusted source. All versions of Apach...
CVE-2021-41830HIGH7.5It is possible for an attacker to manipulate signed documents and macros to appear to come from a trusted source. All ve...
CVE-2021-41801HIGH8.8The ReplaceText extension through 1.41 for MediaWiki has Incorrect Access Control. When a user is blocked after submitti...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now