2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-40456MEDIUM5.3Windows AD FS Security Feature Bypass Vulnerability
CVE-2021-40455MEDIUM5.5Windows Installer Spoofing Vulnerability
CVE-2021-40454MEDIUM5.5Rich Text Edit Control Information Disclosure Vulnerability
CVE-2021-38663MEDIUM5.5Windows exFAT File System Information Disclosure Vulnerability
CVE-2021-38662MEDIUM5.5Windows Fast FAT File System Driver Information Disclosure Vulnerability
CVE-2021-20031MEDIUM6.1A Host Header Redirection vulnerability in SonicOS potentially allows a remote attacker to redirect firewall management ...
CVE-2021-3322MEDIUM6.5Unexpected Pointer Aliasing in IEEE 802154 Fragment Reassembly in Zephyr. Zephyr versions >= >=2.4.0 contain NULL Pointe...
CVE-2021-42326MEDIUM5.3Redmine before 4.1.5 and 4.2.x before 4.2.3 may disclose the names of users on activity views due to an insufficient acc...
CVE-2021-38915MEDIUM6.5IBM Data Risk Manager 2.0.6 stores user credentials in plain clear text which can be read by an authenticated user. IBM ...
CVE-2021-40292MEDIUM5.4A Stored Cross Site Sripting (XSS) vulnerability exists in DzzOffice 2.02.1 via the settingnew parameter.
CVE-2021-3671MEDIUM6.5A null pointer de-reference was found in the way samba kerberos server handled missing sname in TGS-REQ (Ticket Granting...
CVE-2021-35494MEDIUM5.3The Rest API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server, TIBCO JasperRepo...
CVE-2021-27003MEDIUM4.7Clustered Data ONTAP versions prior to 9.5P18, 9.6P15, 9.7P14, 9.8P5 and 9.9.1 are missing an X-Frame-Options header whi...
CVE-2021-37735MEDIUM5.3A remote denial of service vulnerability was discovered in Aruba Instant version(s): Aruba Instant 6.5.x.x: 6.5.4.18 and...
CVE-2021-37734MEDIUM6.5A remote unauthorized read access to files vulnerability was discovered in Aruba Instant version(s): 6.4.x.x: 6.4.4.8-4....
CVE-2021-35214MEDIUM4.7The vulnerability in SolarWinds Pingdom can be described as a failure to invalidate user session upon password or email ...
CVE-2021-40498MEDIUM5.5A vulnerability has been identified in SAP SuccessFactors Mobile Application for Android - versions older than 2108, whi...
CVE-2021-40497MEDIUM5.3SAP BusinessObjects Analysis (edition for OLAP) - versions 420, 430, allows an attacker to exploit certain application e...
CVE-2021-40496MEDIUM4.3SAP Internet Communication framework (ICM) - versions 700, 701, 702, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, 7...
CVE-2021-40495MEDIUM5.3There are multiple Denial-of Service vulnerabilities in SAP NetWeaver Application Server for ABAP and ABAP Platform - ve...
CVE-2021-38183MEDIUM6.1SAP NetWeaver - versions 700, 701, 702, 730, does not sufficiently encode user-controlled inputs, allowing an attacker t...
CVE-2021-38179MEDIUM4.9Debug function of Admin UI of SAP Business One Integration is enabled by default. This allows Admin User to see the capt...
CVE-2021-33727MEDIUM6.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could dow...
CVE-2021-33723MEDIUM6.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could cha...
CVE-2021-33722MEDIUM4.9A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system has a Path Trav...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now