2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44032 | HIGH | 7.5 | 1.8% | Mar 10, 2022 | TP-Link Omada SDN Software Controller before 5.0.15 does not check if the authentication method specified in a connectio... |
| CVE-2021-43970 | HIGH | 8.8 | 1.8% | Mar 10, 2022 | An arbitrary file upload vulnerability exists in albumimages.jsp in Quicklert for Digium 10.0.0 (1043) via a .mp3;.jsp f... |
| CVE-2021-43969 | MEDIUM | 6.5 | 1.5% | Mar 10, 2022 | The login.jsp page of Quicklert for Digium 10.0.0 (1043) is affected by both Blind SQL Injection with Out-of-Band Intera... |
| CVE-2021-42857 | MEDIUM | 5.3 | 1.1% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDaServlet has directory travers... |
| CVE-2021-42856 | MEDIUM | 6.1 | 0.6% | Mar 10, 2022 | It was discovered that the /DsaDataTest endpoint is susceptible to Cross-site scripting (XSS) attack. It was noted that ... |
| CVE-2021-42855 | HIGH | 7.8 | 0.2% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) uses the ".debug_command.config" file ... |
| CVE-2021-42854 | CRITICAL | 9.8 | 1.5% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversa... |
| CVE-2021-42853 | CRITICAL | 9.8 | 1.5% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory... |
| CVE-2021-42787 | CRITICAL | 9.8 | 1.3% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has direct... |
| CVE-2021-42786 | CRITICAL | 9.8 | 2.0% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilit... |
| CVE-2021-42186 | — | — | — | Mar 10, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2021-41657 | MEDIUM | 6.1 | 1.1% | Mar 10, 2022 | SmartBear CodeCollaborator v6.1.6102 was discovered to contain a vulnerability in the web UI which would allow an attack... |
| CVE-2021-40376 | HIGH | 7.8 | 0.4% | Mar 10, 2022 | otris Update Manager 1.2.1.0 allows local users to achieve SYSTEM access via unauthenticated calls to exposed interfaces... |
| CVE-2021-40064 | HIGH | 7.5 | 0.8% | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability ... |
| CVE-2021-40063 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may... |
| CVE-2021-40062 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitati... |
| CVE-2021-40061 | HIGH | 7.5 | 0.6% | Mar 10, 2022 | There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Succes... |
| CVE-2021-40060 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerabilit... |
| CVE-2021-40059 | MEDIUM | 6.5 | 0.3% | Mar 10, 2022 | There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affec... |
| CVE-2021-40058 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerabilit... |
| CVE-2021-40057 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of t... |
| CVE-2021-40056 | HIGH | 7.5 | 0.7% | Mar 10, 2022 | There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitati... |
| CVE-2021-40055 | MEDIUM | 5.9 | 0.5% | Mar 10, 2022 | There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitatio... |
| CVE-2021-40054 | HIGH | 7.5 | 0.6% | Mar 10, 2022 | There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may... |
| CVE-2021-40053 | CRITICAL | 9.1 | 0.7% | Mar 10, 2022 | There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affe... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now