2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-34711 | MEDIUM | 5.5 | 0.3% | Oct 6, 2021 | A vulnerability in the debug shell of Cisco IP Phone software could allow an authenticated, local attacker to read any f... |
| CVE-2021-34706 | MEDIUM | 5.4 | 0.7% | Oct 6, 2021 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2021-34702 | MEDIUM | 4.3 | 0.8% | Oct 6, 2021 | A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticat... |
| CVE-2021-1534 | MEDIUM | 5.3 | 1.0% | Oct 6, 2021 | A vulnerability in the antispam protection mechanisms of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA)... |
| CVE-2021-41125 | MEDIUM | 6.5 | 1.2% | Oct 6, 2021 | Scrapy is a high-level web crawling and scraping framework for Python. If you use `HttpAuthMiddleware` (i.e. the `http_u... |
| CVE-2021-25499 | MEDIUM | 5.5 | 0.2% | Oct 6, 2021 | Intent redirection vulnerability in SamsungAccountSDKSigninActivity of Galaxy Store prior to version 4.5.32.4 allows att... |
| CVE-2021-25491 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | A vulnerability in mfc driver prior to SMR Oct-2021 Release 1 allows memory corruption via NULL-pointer dereference. |
| CVE-2021-25490 | MEDIUM | 6 | 0.8% | Oct 6, 2021 | A keyblob downgrade attack in keymaster prior to SMR Oct-2021 Release 1 allows attacker to trigger IV reuse vulnerabilit... |
| CVE-2021-25489 | MEDIUM | 5.5 | 0.5% | Oct 6, 2021 | Assuming radio permission is gained, missing input validation in modem interface driver prior to SMR Oct-2021 Release 1 ... |
| CVE-2021-25488 | MEDIUM | 5.5 | 0.1% | Oct 6, 2021 | Lack of boundary checking of a buffer in recv_data() of modem interface driver prior to SMR Oct-2021 Release 1 allows OO... |
| CVE-2021-25483 | MEDIUM | 6.5 | 0.2% | Oct 6, 2021 | Lack of boundary checking of a buffer in livfivextractor library prior to SMR Oct-2021 Release 1 allows OOB read. |
| CVE-2021-25482 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | SQL injection vulnerabilities in CMFA framework prior to SMR Oct-2021 Release 1 allow untrusted application to overwrite... |
| CVE-2021-25481 | MEDIUM | 6.7 | 0.1% | Oct 6, 2021 | An improper error handling in Exynos CP booting driver prior to SMR Oct-2021 Release 1 allows local attackers to bypass ... |
| CVE-2021-25477 | MEDIUM | 4.9 | 0.5% | Oct 6, 2021 | An improper error handling in Mediatek RRC Protocol stack prior to SMR Oct-2021 Release 1 allows modem crash and remote ... |
| CVE-2021-25476 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | An information disclosure vulnerability in Widevine TA log prior to SMR Oct-2021 Release 1 allows attackers to bypass th... |
| CVE-2021-25475 | MEDIUM | 6.7 | 0.1% | Oct 6, 2021 | A possible heap-based buffer overflow vulnerability in DSP kernel driver prior to SMR Oct-2021 Release 1 allows arbitrar... |
| CVE-2021-25474 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_show_on_qspanel value in SystemUI... |
| CVE-2021-25473 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | Assuming a shell privilege is gained, an improper exception handling for multi_sim_bar_hide_by_meadia_full value in Syst... |
| CVE-2021-25469 | MEDIUM | 6.7 | 0.1% | Oct 6, 2021 | A possible stack-based buffer overflow vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allows arbitra... |
| CVE-2021-25468 | MEDIUM | 4.4 | 0.1% | Oct 6, 2021 | A possible guessing and confirming a byte memory vulnerability in Widevine trustlet prior to SMR Oct-2021 Release 1 allo... |
| CVE-2021-25467 | MEDIUM | 6.7 | 0.1% | Oct 6, 2021 | Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to S... |
| CVE-2021-29855 | MEDIUM | 5.4 | 0.5% | Oct 6, 2021 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnera... |
| CVE-2021-29836 | MEDIUM | 5.4 | 0.5% | Oct 6, 2021 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0. through 6.1.1.0 is vulnerable to cross-site scripting. This vulner... |
| CVE-2021-29764 | MEDIUM | 5.4 | 0.5% | Oct 6, 2021 | IBM Sterling B2B Integrator 5.2.0.0 through 6.1.1.0 is vulnerable to stored cross-site scripting. This vulnerability all... |
| CVE-2021-29761 | MEDIUM | 4.3 | 0.7% | Oct 6, 2021 | IBM Sterling B2B Integrator Standard Edition 5.2.0.0 through 6.1.1.0 could allow an authenticated user to obtain sensiti... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now