2021 CVE Vulnerabilities
23,447 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28503 | CRITICAL | 9.8 | 0.7% | Feb 4, 2022 | The impact of this vulnerability is that Arista's EOS eAPI may skip re-evaluating user credentials when certificate base... |
| CVE-2021-22288 | HIGH | 7.5 | 1.0% | Feb 4, 2022 | Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ... |
| CVE-2021-22286 | HIGH | 7.5 | 1.0% | Feb 4, 2022 | Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ... |
| CVE-2021-22285 | HIGH | 7.5 | 1.0% | Feb 4, 2022 | Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the A... |
| CVE-2021-22284 | HIGH | 8.8 | 0.8% | Feb 4, 2022 | Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to exec... |
| CVE-2021-21971 | MEDIUM | 5.9 | 0.7% | Feb 4, 2022 | An out-of-bounds write vulnerability exists in the URL_decode functionality of Sealevel Systems, Inc. SeaConnect 370W v1... |
| CVE-2021-21970 | HIGH | 8.1 | 0.9% | Feb 4, 2022 | An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn... |
| CVE-2021-21969 | HIGH | 8.1 | 0.9% | Feb 4, 2022 | An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn... |
| CVE-2021-21968 | HIGH | 8.3 | 0.9% | Feb 4, 2022 | A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34... |
| CVE-2021-21965 | CRITICAL | 9.3 | 1.0% | Feb 4, 2022 | A denial of service vulnerability exists in the SeaMax remote configuration functionality of Sealevel Systems, Inc. SeaC... |
| CVE-2021-21964 | HIGH | 7.4 | 0.7% | Feb 4, 2022 | A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect ... |
| CVE-2021-21963 | MEDIUM | 5.9 | 0.5% | Feb 4, 2022 | An information disclosure vulnerability exists in the Web Server functionality of Sealevel Systems, Inc. SeaConnect 370W... |
| CVE-2021-21962 | HIGH | 8.1 | 1.9% | Feb 4, 2022 | A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. S... |
| CVE-2021-21961 | CRITICAL | 10 | 2.5% | Feb 4, 2022 | A stack-based buffer overflow vulnerability exists in the NBNS functionality of Sealevel Systems, Inc. SeaConnect 370W v... |
| CVE-2021-21960 | CRITICAL | 10 | 2.5% | Feb 4, 2022 | A stack-based buffer overflow vulnerability exists in both the LLMNR functionality of Sealevel Systems, Inc. SeaConnect ... |
| CVE-2021-21959 | HIGH | 8.1 | 0.8% | Feb 4, 2022 | A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfigur... |
| CVE-2021-46671 | MEDIUM | 5.3 | 1.3% | Feb 4, 2022 | options.c in atftp before 0.7.5 reads past the end of an array, and consequently discloses server-side /etc/group data t... |
| CVE-2021-45408 | MEDIUM | 6.1 | 0.6% | Feb 4, 2022 | Open Redirect vulnerability exists in SeedDMS 6.0.15 in out.Login.php, which llows remote malicious users to redirect us... |
| CVE-2021-23507 | CRITICAL | 9.8 | 2.1% | Feb 4, 2022 | The package object-path-set before 1.0.2 are vulnerable to Prototype Pollution via the setPath method, as it allows an a... |
| CVE-2021-23497 | CRITICAL | 9.8 | 3.5% | Feb 4, 2022 | This affects the package @strikeentco/set before 1.0.2. It allows an attacker to cause a denial of service and may lead ... |
| CVE-2021-23470 | CRITICAL | 9.8 | 1.2% | Feb 4, 2022 | This affects the package putil-merge before 3.8.0. The merge() function does not check the values passed into the argume... |
| CVE-2021-45429 | MEDIUM | 5.5 | 0.8% | Feb 4, 2022 | A Buffer Overflow vulnerablity exists in VirusTotal YARA git commit: 605b2edf07ed8eb9a2c61ba22eb2e7c362f47ba7 via yr_set... |
| CVE-2021-29398 | MEDIUM | 5.3 | 1.8% | Feb 4, 2022 | Directory traversal in /northstar/Common/NorthFileManager/fileManagerObjects.jsp Northstar Technologies Inc NorthStar Cl... |
| CVE-2021-29397 | HIGH | 7.5 | 0.8% | Feb 4, 2022 | Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Cl... |
| CVE-2021-29396 | CRITICAL | 9.8 | 1.6% | Feb 4, 2022 | Systemic Insecure Permissions in Northstar Technologies Inc NorthStar Club Management 6.3 allows remote unauthenticated ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now