2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-39204 | HIGH | 7.5 | 1.6% | Sep 9, 2021 | Pomerium is an open source identity-aware access proxy. Envoy, which Pomerium is based on, incorrectly handles resetting... |
| CVE-2021-39162 | HIGH | 8.6 | 1.6% | Sep 9, 2021 | Pomerium is an open source identity-aware access proxy. Envoy, which Pomerium is based on, can abnormally terminate if a... |
| CVE-2021-38324 | HIGH | 7.5 | 1.7% | Sep 9, 2021 | The SP Rental Manager WordPress plugin is vulnerable to SQL Injection via the orderby parameter found in the ~/user/shor... |
| CVE-2021-25465 | HIGH | 7 | 0.2% | Sep 9, 2021 | An improper scheme check vulnerability in Samsung Themes prior to version 5.2.01 allows attackers to perform Man-in-the-... |
| CVE-2021-25461 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | An improper length check in APAService prior to SMR Sep-2021 Release 1 results in stack based Buffer Overflow. |
| CVE-2021-28912 | HIGH | 7.2 | 1.2% | Sep 9, 2021 | BAB TECHNOLOGIE GmbH eibPort V3. Each device has its own unique hard coded and weak root SSH key passphrase known as 'ei... |
| CVE-2021-28910 | HIGH | 7.5 | 1.1% | Sep 9, 2021 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 contains basic SSRF vulnerability. It allow unauthenticated attacker... |
| CVE-2021-32487 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32486 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32485 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32484 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-38723 | HIGH | 8.8 | 1.0% | Sep 9, 2021 | FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/pages/items |
| CVE-2021-3761 | HIGH | 7.5 | 1.2% | Sep 9, 2021 | Any CA issuer in the RPKI can trick OctoRPKI prior to 1.3.0 into emitting an invalid VRP "MaxLength" value, causing RTR ... |
| CVE-2021-28498 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user enable passwords ... |
| CVE-2021-28497 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-28494 | HIGH | 8.8 | 0.8% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-28493 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-40222 | HIGH | 7.2 | 4.5% | Sep 9, 2021 | Rittal CMC PU III Web management Version affected: V3.11.00_2. Version fixed: V3.17.10 is affected by a remote code exec... |
| CVE-2021-39459 | HIGH | 7.2 | 4.6% | Sep 9, 2021 | Remote code execution in the modules component in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u... |
| CVE-2021-26603 | HIGH | 7.8 | 0.6% | Sep 9, 2021 | A heap overflow issue was found in ARK library of bandisoft Co., Ltd when the Ark_DigPathA function parsed a file path. ... |
| CVE-2021-30295 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | Possible heap overflow due to improper validation of local variable while storing current task information locally in Sn... |
| CVE-2021-30290 | HIGH | 7 | 0.1% | Sep 9, 2021 | Possible null pointer dereference due to race condition between timeline fence signal and time line fence destroy in Sna... |
| CVE-2021-1974 | HIGH | 7.5 | 0.6% | Sep 9, 2021 | Possible buffer over read due to lack of alignment between map or unmap length of IPA SMMU and WLAN SMMU in Snapdragon A... |
| CVE-2021-1971 | HIGH | 7.5 | 0.6% | Sep 9, 2021 | Possible assertion due to lack of physical layer state validation in Snapdragon Auto, Snapdragon Compute, Snapdragon Con... |
| CVE-2021-1952 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | Possible buffer over read occurs due to lack of length check of request buffer in Snapdragon Auto, Snapdragon Compute, S... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now