2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-44625 | CRITICAL | 9.8 | 1.8% | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, w... |
| CVE-2021-44623 | CRITICAL | 9.8 | 1.8% | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_p... |
| CVE-2021-44622 | CRITICAL | 9.8 | 2.4% | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_veri... |
| CVE-2021-42854 | CRITICAL | 9.8 | 1.5% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversa... |
| CVE-2021-42853 | CRITICAL | 9.8 | 1.5% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory... |
| CVE-2021-42787 | CRITICAL | 9.8 | 1.3% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has direct... |
| CVE-2021-42786 | CRITICAL | 9.8 | 2.0% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilit... |
| CVE-2021-40053 | CRITICAL | 9.1 | 0.7% | Mar 10, 2022 | There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affe... |
| CVE-2021-40050 | CRITICAL | 9.8 | 1.0% | Mar 10, 2022 | There is an out-of-bounds read vulnerability in the IFAA module. Successful exploitation of this vulnerability may cause... |
| CVE-2021-33293 | CRITICAL | 9.1 | 2.1% | Mar 10, 2022 | Panorama Tools libpano13 v2.9.20 was discovered to contain an out-of-bounds read in the function panoParserFindOLine() i... |
| CVE-2021-37208 | CRITICAL | 9.6 | 0.5% | Mar 8, 2022 | A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80... |
| CVE-2021-44749 | CRITICAL | 9.6 | 0.8% | Mar 6, 2022 | A vulnerability affecting F-Secure SAFE browser protection was discovered improper URL handling can be triggered to caus... |
| CVE-2021-46704 | CRITICAL | 9.8 | 21.9% | Mar 6, 2022 | In GenieACS 1.2.x before 1.2.8, the UI interface API is vulnerable to unauthenticated OS command injection via the ping ... |
| CVE-2021-46703 | CRITICAL | 9.8 | 1.8% | Mar 6, 2022 | In the IsolatedRazorEngine component of Antaris RazorEngine through 4.5.1-alpha001, an attacker can execute arbitrary .N... |
| CVE-2021-46384 | CRITICAL | 9.8 | 2.1% | Mar 4, 2022 | https://gitee.com/mingSoft/MCMS MCMS <=5.2.5 is affected by: RCE. The impact is: execute arbitrary code (remote). The at... |
| CVE-2021-46394 | CRITICAL | 9.8 | 2.6% | Mar 4, 2022 | There is a stack buffer overflow vulnerability in the formSetPPTPServer function of Tenda-AX3 router V16.03.12.10_CN. Th... |
| CVE-2021-46393 | CRITICAL | 9.8 | 15.9% | Mar 4, 2022 | There is a stack buffer overflow vulnerability in the formSetPPTPServer function of Tenda-AX3 router V16.03.12.10_CN. Th... |
| CVE-2021-3762 | CRITICAL | 9.8 | 4.5% | Mar 3, 2022 | A directory traversal vulnerability was found in the ClairCore engine of Clair. An attacker can exploit this by supplyin... |
| CVE-2021-38578 | CRITICAL | 9.8 | 1.0% | Mar 3, 2022 | Existing CommBuffer checks in SmmEntryPoint will not catch underflow when computing BufferSize. |
| CVE-2021-41193 | CRITICAL | 9.8 | 2.3% | Mar 1, 2022 | wire-avs is the audio visual signaling (AVS) component of Wire, an open-source messenger. A remote format string vulnera... |
| CVE-2021-32586 | CRITICAL | 9.8 | 1.0% | Mar 1, 2022 | An improper input validation vulnerability in the web server CGI facilities of FortiMail before 7.0.1 may allow an unaut... |
| CVE-2021-36166 | CRITICAL | 9.8 | 1.4% | Mar 1, 2022 | An improper authentication vulnerability in FortiMail before 7.0.1 may allow a remote attacker to efficiently guess one ... |
| CVE-2021-4039 | CRITICAL | 9.8 | 71.0% | Mar 1, 2022 | A command injection vulnerability in the web interface of the Zyxel NWA-1100-NH firmware could allow an attacker to exec... |
| CVE-2021-42767 | CRITICAL | 9.1 | 1.5% | Mar 1, 2022 | A directory traversal vulnerability in the apoc plugins in Neo4J Graph database before 4.4.0.1 allows attackers to read ... |
| CVE-2021-45414 | CRITICAL | 9.8 | 3.3% | Feb 28, 2022 | A Remote Code Execution (RCE) vulnerability exists in DataRobot through 2021-10-28 because it allows submission of a Doc... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now