2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1132 | HIGH | 7.5 | 1.6% | Nov 18, 2024 | A vulnerability in the API subsystem and in the web-management interface of Cisco Network Services Orchestrator (NS... |
| CVE-2021-34753 | MEDIUM | 5.3 | 0.6% | Nov 15, 2024 | A vulnerability in the payload inspection for Ethernet Industrial Protocol (ENIP) traffic for Cisco Firepower Threat Def... |
| CVE-2021-34752 | MEDIUM | 6.7 | 0.3% | Nov 15, 2024 | A vulnerability in the CLI of Cisco FTD Software could allow an authenticated, local attacker with administrative p... |
| CVE-2021-34751 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | A vulnerability in the administrative web-based GUI configuration manager of Cisco Firepower Management Center (FMC) Sof... |
| CVE-2021-34750 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | A vulnerability in the administrative web-based GUI configuration manager of Cisco Firepower Management Center Software ... |
| CVE-2021-1494 | MEDIUM | 5.8 | 1.1% | Nov 15, 2024 | Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticate... |
| CVE-2021-1491 | MEDIUM | 6.5 | 1.3% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated... |
| CVE-2021-1484 | MEDIUM | 6.5 | 1.2% | Nov 15, 2024 | A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to inj... |
| CVE-2021-1483 | MEDIUM | 6.4 | 0.9% | Nov 15, 2024 | A vulnerability in the web UI of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to gai... |
| CVE-2021-1482 | MEDIUM | 6.4 | 0.6% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated... |
| CVE-2021-1481 | MEDIUM | 4.3 | 0.8% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated... |
| CVE-2021-1470 | MEDIUM | 4.9 | 1.0% | Nov 15, 2024 | A vulnerability in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated... |
| CVE-2021-1466 | MEDIUM | 5.4 | 0.6% | Nov 15, 2024 | A vulnerability in the vDaemon service of Cisco SD-WAN vManage Software could allow an authenticated, local attacke... |
| CVE-2021-1464 | MEDIUM | 5 | 1.3% | Nov 15, 2024 | A vulnerability in Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorizat... |
| CVE-2021-3991 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | An Improper Authorization vulnerability exists in Dolibarr versions prior to the 'develop' branch. A user with restricte... |
| CVE-2021-3988 | MEDIUM | 6.1 | 0.4% | Nov 15, 2024 | A Cross-site Scripting (XSS) vulnerability exists in janeczku/calibre-web, specifically in the file `edit_books.js`. The... |
| CVE-2021-3987 | MEDIUM | 4.3 | 0.3% | Nov 15, 2024 | An improper access control vulnerability exists in janeczku/calibre-web. The affected version allows users without publi... |
| CVE-2021-3986 | MEDIUM | 4.3 | 0.4% | Nov 15, 2024 | A vulnerability in janeczku/calibre-web allows unauthorized users to view the names of private shelves belonging to othe... |
| CVE-2021-3902 | CRITICAL | 9.8 | 0.9% | Nov 15, 2024 | An improper restriction of external entities (XXE) vulnerability in dompdf/dompdf's SVG parser allows for Server-Side Re... |
| CVE-2021-3841 | MEDIUM | 5.4 | 0.2% | Nov 15, 2024 | sylius/sylius versions prior to 1.9.10, 1.10.11, and 1.11.2 are vulnerable to stored cross-site scripting (XSS) through ... |
| CVE-2021-3838 | CRITICAL | 9.8 | 1.4% | Nov 15, 2024 | DomPDF before version 2.0.0 is vulnerable to PHAR deserialization due to a lack of checking on the protocol before passi... |
| CVE-2021-3742 | HIGH | 8.8 | 0.4% | Nov 15, 2024 | A Server-Side Request Forgery (SSRF) vulnerability was discovered in chatwoot/chatwoot, affecting all versions prior to ... |
| CVE-2021-3741 | MEDIUM | 5.4 | 0.3% | Nov 15, 2024 | A stored cross-site scripting (XSS) vulnerability was discovered in chatwoot/chatwoot, affecting all versions prior to 2... |
| CVE-2021-3740 | MEDIUM | 6.8 | 0.2% | Nov 15, 2024 | A Session Fixation vulnerability exists in chatwoot/chatwoot versions prior to 2.4.0. The application does not invalidat... |
| CVE-2021-27704 | MEDIUM | 6.5 | 0.4% | Nov 12, 2024 | Appspace 6.2.4 is affected by Incorrect Access Control via the Appspace Web Portal password reset page. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now