2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-36959 | MEDIUM | 5.5 | 1.2% | Sep 15, 2021 | Windows Authenticode Spoofing Vulnerability |
| CVE-2021-36956 | MEDIUM | 4.4 | 0.8% | Sep 15, 2021 | Azure Sphere Information Disclosure Vulnerability |
| CVE-2021-26437 | MEDIUM | 5.5 | 2.1% | Sep 15, 2021 | Visual Studio Code Spoofing Vulnerability |
| CVE-2021-22147 | MEDIUM | 6.5 | 1.0% | Sep 15, 2021 | Elasticsearch before 7.14.0 did not apply document and field level security to searchable snapshots. This could lead to ... |
| CVE-2021-23027 | MEDIUM | 6.1 | 0.6% | Sep 14, 2021 | On version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3.1, and 14.1.x before 14.1.4.3, a DOM based cross-site scripting ... |
| CVE-2021-39391 | MEDIUM | 6.1 | 0.8% | Sep 14, 2021 | Cross Site Scripting (XSS) vulnerability exists in the admin panel in Beego v2.0.1 via the URI path in an HTTP request, ... |
| CVE-2021-35493 | MEDIUM | 5.4 | 0.6% | Sep 14, 2021 | The WebFOCUS Reporting Server and WebFOCUS Client components of TIBCO Software Inc.'s TIBCO WebFOCUS Client, TIBCO WebFO... |
| CVE-2021-23046 | MEDIUM | 4.9 | 0.7% | Sep 14, 2021 | On all versions of Guided Configuration before 8.0.0, when a configuration that contains secure properties is created an... |
| CVE-2021-23043 | MEDIUM | 6.5 | 1.9% | Sep 14, 2021 | On BIG-IP, on all versions of 16.1.x, 16.0.x, 15.1.x, 14.1.x, 13.1.x, 12.1.x, and 11.6.x, a directory traversal vulnerab... |
| CVE-2021-29841 | MEDIUM | 5.4 | 0.5% | Sep 14, 2021 | IBM Financial Transaction Manager 3.2.4 is vulnerable to cross-site scripting. This vulnerability allows users to embed ... |
| CVE-2021-23047 | MEDIUM | 5.3 | 0.6% | Sep 14, 2021 | On version 16.x before 16.1.0, 15.1.x before 15.1.3.1, 14.1.x before 14.1.4.3, and all versions of 13.1.x, 12.1.x and 11... |
| CVE-2021-23041 | MEDIUM | 6.1 | 0.6% | Sep 14, 2021 | On BIG-IP version 16.0.x before 16.0.1.2, 15.1.x before 15.1.3, 14.1.x before 14.1.4.2, 13.1.x before 13.1.4.1, and all ... |
| CVE-2021-20582 | MEDIUM | 5.3 | 0.8% | Sep 14, 2021 | IBM Security Secret Server up to 11.0 stores sensitive information in URL parameters. This may lead to information discl... |
| CVE-2021-20569 | MEDIUM | 5.3 | 0.9% | Sep 14, 2021 | IBM Security Secret Server up to 11.0 could allow an attacker to enumerate usernames due to improper input validation. I... |
| CVE-2021-20508 | MEDIUM | 4.3 | 0.9% | Sep 14, 2021 | IBM Security Secret Server up to 11.0 could allow a remote attacker to obtain sensitive information when a detailed tech... |
| CVE-2021-23053 | MEDIUM | 5.3 | 0.9% | Sep 14, 2021 | On version 15.1.x before 15.1.3, 14.1.x before 14.1.3.1, and 13.1.x before 13.1.3.6, when the brute force protection fea... |
| CVE-2021-23052 | MEDIUM | 6.1 | 0.6% | Sep 14, 2021 | On version 14.1.x before 14.1.4.4 and all versions of 13.1.x, an open redirect vulnerability exists on virtual servers e... |
| CVE-2021-38175 | MEDIUM | 6.5 | 0.8% | Sep 14, 2021 | SAP Analysis for Microsoft Office - version 2.8, allows an attacker with high privileges to read sensitive data over the... |
| CVE-2021-38174 | MEDIUM | 6.5 | 0.7% | Sep 14, 2021 | When a user opens manipulated files received from untrusted sources in SAP 3D Visual Enterprise Viewer version - 9, the ... |
| CVE-2021-38164 | MEDIUM | 5.4 | 0.5% | Sep 14, 2021 | SAP ERP Financial Accounting (RFOPENPOSTING_FR) versions - SAP_APPL - 600, 602, 603, 604, 605, 606, 616, SAP_FIN - 617, ... |
| CVE-2021-38150 | MEDIUM | 6.5 | 0.5% | Sep 14, 2021 | When an attacker manages to get access to the local memory, or the memory dump of a victim, for example by a social engi... |
| CVE-2021-37532 | MEDIUM | 4.3 | 0.8% | Sep 14, 2021 | SAP Business One version - 10, due to improper input validation, allows an authenticated User to gain access to director... |
| CVE-2021-33688 | MEDIUM | 4.3 | 0.6% | Sep 14, 2021 | SAP Business One allows an attacker with business privileges to execute crafted database queries, exposing the back-end ... |
| CVE-2021-33686 | MEDIUM | 5.3 | 0.8% | Sep 14, 2021 | Under certain conditions, SAP Business One version - 10.0, allows an unauthorized attacker to get access to some encrypt... |
| CVE-2021-33685 | MEDIUM | 6.5 | 1.0% | Sep 14, 2021 | SAP Business One version - 10.0 allows low-level authorized attacker to traverse the file system to access files or dire... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now