2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-44032HIGH7.5TP-Link Omada SDN Software Controller before 5.0.15 does not check if the authentication method specified in a connectio...
CVE-2021-43970HIGH8.8An arbitrary file upload vulnerability exists in albumimages.jsp in Quicklert for Digium 10.0.0 (1043) via a .mp3;.jsp f...
CVE-2021-43969MEDIUM6.5The login.jsp page of Quicklert for Digium 10.0.0 (1043) is affected by both Blind SQL Injection with Out-of-Band Intera...
CVE-2021-42857MEDIUM5.3It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDaServlet has directory travers...
CVE-2021-42856MEDIUM6.1It was discovered that the /DsaDataTest endpoint is susceptible to Cross-site scripting (XSS) attack. It was noted that ...
CVE-2021-42855HIGH7.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) uses the ".debug_command.config" file ...
CVE-2021-42854CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversa...
CVE-2021-42853CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory...
CVE-2021-42787CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has direct...
CVE-2021-42786CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilit...
CVE-2021-42186Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-41657MEDIUM6.1SmartBear CodeCollaborator v6.1.6102 was discovered to contain a vulnerability in the web UI which would allow an attack...
CVE-2021-40376HIGH7.8otris Update Manager 1.2.1.0 allows local users to achieve SYSTEM access via unauthenticated calls to exposed interfaces...
CVE-2021-40064HIGH7.5There is a heap-based buffer overflow vulnerability in system components. Successful exploitation of this vulnerability ...
CVE-2021-40063HIGH7.5There is an improper access control vulnerability in the video module. Successful exploitation of this vulnerability may...
CVE-2021-40062HIGH7.5There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitati...
CVE-2021-40061HIGH7.5There is a vulnerability of accessing resources using an incompatible type (type confusion) in the Bastet module. Succes...
CVE-2021-40060HIGH7.5There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerabilit...
CVE-2021-40059MEDIUM6.5There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affec...
CVE-2021-40058HIGH7.5There is a heap-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerabilit...
CVE-2021-40057HIGH7.5There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of t...
CVE-2021-40056HIGH7.5There is a vulnerability of copying input buffer without checking its size in the video framework. Successful exploitati...
CVE-2021-40055MEDIUM5.9There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitatio...
CVE-2021-40054HIGH7.5There is an integer underflow vulnerability in the atcmdserver module. Successful exploitation of this vulnerability may...
CVE-2021-40053CRITICAL9.1There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affe...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now