2021 CVE Vulnerabilities

23,447 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-28503CRITICAL9.8The impact of this vulnerability is that Arista's EOS eAPI may skip re-evaluating user credentials when certificate base...
CVE-2021-22288HIGH7.5Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ...
CVE-2021-22286HIGH7.5Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ...
CVE-2021-22285HIGH7.5Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the A...
CVE-2021-22284HIGH8.8Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to exec...
CVE-2021-21971MEDIUM5.9An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1...
CVE-2021-21970HIGH8.1An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn...
CVE-2021-21969HIGH8.1An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn...
CVE-2021-21968HIGH8.3A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34...
CVE-2021-21965CRITICAL9.3A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaC...
CVE-2021-21964HIGH7.4A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect ...
CVE-2021-21963MEDIUM5.9An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W...
CVE-2021-21962HIGH8.1A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. S...
CVE-2021-21961CRITICAL10A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v...
CVE-2021-21960CRITICAL10A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect ...
CVE-2021-21959HIGH8.1A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfigur...
CVE-2021-46671MEDIUM5.3options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data t...
CVE-2021-45408MEDIUM6.1Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect us...
CVE-2021-23507CRITICAL9.8The package object-path-set before 1.0.2 are vulnerable to Prototype Pollution via the setPath method, as it allows an a...
CVE-2021-23497CRITICAL9.8This affects the package @strikeentco/set before 1.0.2. It allows an attacker to cause a denial of service and may lead ...
CVE-2021-23470CRITICAL9.8This affects the package putil-merge before 3.8.0. The merge() function does not check the values passed into the argume...
CVE-2021-45429MEDIUM5.5A Buffer Overflow vulnerablity exists in VirusTotal YARA git commit: 605b2edf07ed8eb9a2c61ba22eb2e7c362f47ba7 via yr_set...
CVE-2021-29398MEDIUM5.3Directory traversal in /northstar/Common/NorthFileManager/fileManagerObjects.jsp Northstar Technologies Inc NorthStar Cl...
CVE-2021-29397HIGH7.5Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Cl...
CVE-2021-29396CRITICAL9.8Systemic Insecure Permissions in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now