2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22041 | MEDIUM | 6.7 | 0.6% | Feb 16, 2022 | VMware ESXi, Workstation, and Fusion contain a double-fetch vulnerability in the UHCI USB controller. A malicious actor ... |
| CVE-2021-22040 | MEDIUM | 6.7 | 0.7% | Feb 16, 2022 | VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious acto... |
| CVE-2021-21966 | MEDIUM | 5.3 | 1.4% | Feb 16, 2022 | An information disclosure vulnerability exists in the HTTP Server /ping.html functionality of Texas Instruments CC3200 S... |
| CVE-2021-21958 | HIGH | 7.8 | 1.0% | Feb 16, 2022 | A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2... |
| CVE-2021-26726 | HIGH | 8.8 | 1.1% | Feb 16, 2022 | A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to e... |
| CVE-2021-45391 | HIGH | 7.5 | 1.8% | Feb 16, 2022 | A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/set... |
| CVE-2021-46388 | — | — | — | Feb 16, 2022 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: Reason: The issue is not a vulnerability (fails CNT2) - H... |
| CVE-2021-46252 | MEDIUM | 6.5 | 0.5% | Feb 15, 2022 | A Cross-Site Request Forgery (CSRF) in RequirementsBypassPage.php of Scratch Wiki scratch-confirmaccount-v3 allows attac... |
| CVE-2021-46251 | MEDIUM | 6.1 | 0.6% | Feb 15, 2022 | A reflected cross-site scripting (XSS) in ScratchOAuth2 before commit 1603f04e44ef67dde6ccffe866d2dca16defb293 allows at... |
| CVE-2021-46250 | CRITICAL | 10 | 1.0% | Feb 15, 2022 | An issue in SOA2Login::commented of ScratchOAuth2 before commit a91879bd58fa83b09283c0708a1864cdf067c64a allows attacker... |
| CVE-2021-46249 | MEDIUM | 6.5 | 0.6% | Feb 15, 2022 | An authorization bypass exploited by a user-controlled key in SpecificApps REST API in ScratchOAuth2 before commit d856d... |
| CVE-2021-35380 | HIGH | 7.5 | 39.0% | Feb 15, 2022 | A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthe... |
| CVE-2021-46321 | CRITICAL | 9.8 | 1.7% | Feb 15, 2022 | Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiBasicCfg modul... |
| CVE-2021-46265 | CRITICAL | 9.8 | 1.7% | Feb 15, 2022 | Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wanBasicCfg module... |
| CVE-2021-46264 | CRITICAL | 9.8 | 1.7% | Feb 15, 2022 | Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the onlineList module.... |
| CVE-2021-46263 | CRITICAL | 9.8 | 1.7% | Feb 15, 2022 | Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the wifiTime module. T... |
| CVE-2021-46262 | CRITICAL | 9.8 | 1.7% | Feb 15, 2022 | Tenda AC Series Router AC11_V02.03.01.104_CN was discovered to contain a stack buffer overflow in the PPPoE module. This... |
| CVE-2021-37354 | CRITICAL | 9.8 | 1.3% | Feb 15, 2022 | Xerox Phaser 4622 v35.013.01.000 was discovered to contain a buffer overflow in the function sub_3226AC via the TIMEZONE... |
| CVE-2021-33945 | CRITICAL | 9.8 | 1.8% | Feb 15, 2022 | RICOH Printer series SP products 320DN, SP 325DNw, SP 320SN, SP 320SFN, SP 325SNw, SP 325SFNw, SP 330SN, Aficio SP 3500S... |
| CVE-2021-42714 | HIGH | 7.8 | 0.4% | Feb 15, 2022 | Splashtop Remote Client (Business Edition) through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permiss... |
| CVE-2021-42713 | HIGH | 7.8 | 0.3% | Feb 15, 2022 | Splashtop Remote Client (Personal Edition) through 3.4.6.1 creates a Temporary File in a Directory with Insecure Permiss... |
| CVE-2021-43050 | HIGH | 7.8 | 0.2% | Feb 15, 2022 | The Auth Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitabl... |
| CVE-2021-43049 | CRITICAL | 9.8 | 1.3% | Feb 15, 2022 | The Database component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitable v... |
| CVE-2021-44960 | MEDIUM | 6.5 | 1.2% | Feb 15, 2022 | In SVGPP SVG++ library 1.3.0, the XMLDocument::getRoot function in the renderDocument function handled the XMLDocument o... |
| CVE-2021-43734 | HIGH | 7.5 | 10.7% | Feb 15, 2022 | kkFileview v4.0.0 has arbitrary file read through a directory traversal vulnerability which may lead to sensitive file l... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now