2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-44625CRITICAL9.8A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, w...
CVE-2021-44623CRITICAL9.8A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_p...
CVE-2021-44622CRITICAL9.8A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_veri...
CVE-2021-42854CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversa...
CVE-2021-42853CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory...
CVE-2021-42787CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has direct...
CVE-2021-42786CRITICAL9.8It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilit...
CVE-2021-40053CRITICAL9.1There is a permission control vulnerability in the Nearby module.Successful exploitation of this vulnerability will affe...
CVE-2021-40050CRITICAL9.8There is an out-of-bounds read vulnerability in the IFAA module. Successful exploitation of this vulnerability may cause...
CVE-2021-33293CRITICAL9.1Panorama Tools libpano13 v2.9.20 was discovered to contain an out-of-bounds read in the function panoParserFindOLine() i...
CVE-2021-37208CRITICAL9.6A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i800NC, RUGGEDCOM i801, RUGGEDCOM i801NC, RUGGEDCOM i80...
CVE-2021-44749CRITICAL9.6A vulnerability affecting F-Secure SAFE browser protection was discovered improper URL handling can be triggered to caus...
CVE-2021-46704CRITICAL9.8In GenieACS 1.2.x before 1.2.8, the UI interface API is vulnerable to unauthenticated OS command injection via the ping ...
CVE-2021-46703CRITICAL9.8In the IsolatedRazorEngine component of Antaris RazorEngine through 4.5.1-alpha001, an attacker can execute arbitrary .N...
CVE-2021-46384CRITICAL9.8https://gitee.com/mingSoft/MCMS MCMS <=5.2.5 is affected by: RCE. The impact is: execute arbitrary code (remote). The at...
CVE-2021-46394CRITICAL9.8There is a stack buffer overflow vulnerability in the formSetPPTPServer function of Tenda-AX3 router V16.03.12.10_CN. Th...
CVE-2021-46393CRITICAL9.8There is a stack buffer overflow vulnerability in the formSetPPTPServer function of Tenda-AX3 router V16.03.12.10_CN. Th...
CVE-2021-3762CRITICAL9.8A directory traversal vulnerability was found in the ClairCore engine of Clair. An attacker can exploit this by supplyin...
CVE-2021-38578CRITICAL9.8Existing CommBuffer checks in SmmEntryPoint will not catch underflow when computing BufferSize.
CVE-2021-41193CRITICAL9.8wire-avs is the audio visual signaling (AVS) component of Wire, an open-source messenger. A remote format string vulnera...
CVE-2021-32586CRITICAL9.8An improper input validation vulnerability in the web server CGI facilities of FortiMail before 7.0.1 may allow an unaut...
CVE-2021-36166CRITICAL9.8An improper authentication vulnerability in FortiMail before 7.0.1 may allow a remote attacker to efficiently guess one ...
CVE-2021-4039CRITICAL9.8A command injection vulnerability in the web interface of the Zyxel NWA-1100-NH firmware could allow an attacker to exec...
CVE-2021-42767CRITICAL9.1A directory traversal vulnerability in the apoc plugins in Neo4J Graph database before 4.4.0.1 allows attackers to read ...
CVE-2021-45414CRITICAL9.8A Remote Code Execution (RCE) vulnerability exists in DataRobot through 2021-10-28 because it allows submission of a Doc...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now