2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25464 | MEDIUM | 5.5 | 0.3% | Sep 9, 2021 | An improper file management vulnerability in SamsungCapture prior to version 4.8.02 allows sensitive information leak. |
| CVE-2021-25462 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | NULL pointer dereference vulnerability in NPU driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory co... |
| CVE-2021-25460 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | An improper access control vulnerability in sspExit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows atta... |
| CVE-2021-25459 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | An improper access control vulnerability in sspInit() in BlockchainTZService prior to SMR Sep-2021 Release 1 allows atta... |
| CVE-2021-25458 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | NULL pointer dereference vulnerability in ION driver prior to SMR Sep-2021 Release 1 allows attackers to cause memory co... |
| CVE-2021-25456 | MEDIUM | 5.5 | 0.2% | Sep 9, 2021 | OOB read vulnerability in libswmfextractor.so library prior to SMR Sep-2021 Release 1 allows attackers to execute memcpy... |
| CVE-2021-25454 | MEDIUM | 5.5 | 0.2% | Sep 9, 2021 | OOB read vulnerability in libsaacextractor.so library prior to SMR Sep-2021 Release 1 allows attackers to execute remote... |
| CVE-2021-25453 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | Some improper access control in Bluetooth APIs prior to SMR Sep-2021 Release 1 allows untrusted application to get Bluet... |
| CVE-2021-25452 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | An improper input validation vulnerability in loading graph file in DSP driver prior to SMR Sep-2021 Release 1 allows at... |
| CVE-2021-25450 | MEDIUM | 6.5 | 0.2% | Sep 9, 2021 | Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Sep-2021 Release 1 allows attackers to write file a... |
| CVE-2021-40284 | MEDIUM | 6.5 | 2.5% | Sep 9, 2021 | D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer overflow which can cause a denial of service. This vulnerabili... |
| CVE-2021-38725 | MEDIUM | 5.3 | 0.8% | Sep 9, 2021 | Fuel CMS 1.5.0 has a brute force vulnerability in fuel/modules/fuel/controllers/Login.php |
| CVE-2021-38721 | MEDIUM | 6.5 | 0.6% | Sep 9, 2021 | FUEL CMS 1.5.0 login.php contains a cross-site request forgery (CSRF) vulnerability |
| CVE-2021-22239 | MEDIUM | 4.3 | 0.6% | Sep 9, 2021 | An unauthorized user was able to insert metadata when creating new issue on GitLab CE/EE 14.0 and later. |
| CVE-2021-37101 | MEDIUM | 6.8 | 0.2% | Sep 9, 2021 | There is an improper authorization vulnerability in AIS-BW50-00 9.0.6.2(H100SP10C00) and 9.0.6.2(H100SP15C00). Due to im... |
| CVE-2021-28499 | MEDIUM | 5.5 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user account passwords... |
| CVE-2021-40223 | MEDIUM | 5.4 | 0.6% | Sep 9, 2021 | Rittal CMC PU III Web management (version V3.11.00_2) fails to sanitize user input on several parameters of the configur... |
| CVE-2021-39458 | MEDIUM | 6.5 | 1.2% | Sep 9, 2021 | Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u... |
| CVE-2021-36871 | MEDIUM | 5.4 | 0.5% | Sep 9, 2021 | Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities in WordPress WP Google Maps Pro premium plu... |
| CVE-2021-36870 | MEDIUM | 5.4 | 0.6% | Sep 9, 2021 | Multiple Authenticated Persistent Cross-Site Scripting (XSS) vulnerabilities in WordPress WP Google Maps plugin (version... |
| CVE-2021-20118 | MEDIUM | 6.7 | 0.3% | Sep 9, 2021 | Nessus Agent 8.3.0 and earlier was found to contain a local privilege escalation vulnerability which could allow an auth... |
| CVE-2021-20117 | MEDIUM | 6.7 | 0.3% | Sep 9, 2021 | Nessus Agent 8.3.0 and earlier was found to contain a local privilege escalation vulnerability which could allow an auth... |
| CVE-2021-30294 | MEDIUM | 5.5 | 0.1% | Sep 9, 2021 | Potential null pointer dereference in KGSL GPU auxiliary command due to improper validation of user input in Snapdragon ... |
| CVE-2021-1963 | MEDIUM | 6.7 | 0.1% | Sep 9, 2021 | Possible use-after-free due to lack of validation for the rule count in filter table in IPA driver in Snapdragon Auto, S... |
| CVE-2021-1962 | MEDIUM | 6.7 | 0.1% | Sep 9, 2021 | Buffer Overflow while processing IOCTL for getting peripheral endpoint information there is no proper validation for inp... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now