2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-34640 | MEDIUM | 6.1 | 2.2% | Aug 11, 2021 | The Securimage-WP-Fixed WordPress plugin is vulnerable to Reflected Cross-Site Scripting due to the use of $_SERVER['PHP... |
| CVE-2021-0083 | MEDIUM | 4.4 | 0.2% | Aug 11, 2021 | Improper input validation in some Intel(R) Optane(TM) PMem versions before versions 1.2.0.5446 or 2.2.0.1547 may allow a... |
| CVE-2021-0012 | MEDIUM | 5.5 | 0.2% | Aug 11, 2021 | Use after free in some Intel(R) Graphics Driver before version 27.20.100.8336, 15.45.33.5164, and 15.40.47.5166 may allo... |
| CVE-2021-0009 | MEDIUM | 6.5 | 0.4% | Aug 11, 2021 | Out-of-bounds read in the firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before ... |
| CVE-2021-0008 | MEDIUM | 4.4 | 0.2% | Aug 11, 2021 | Uncontrolled resource consumption in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapt... |
| CVE-2021-0007 | MEDIUM | 4.4 | 0.2% | Aug 11, 2021 | Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before vers... |
| CVE-2021-0006 | MEDIUM | 4.4 | 0.2% | Aug 11, 2021 | Improper conditions check in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters befo... |
| CVE-2021-0005 | MEDIUM | 4.4 | 0.2% | Aug 11, 2021 | Uncaught exception in firmware for Intel(R) Ethernet Adapters 800 Series Controllers and associated adapters before vers... |
| CVE-2021-0004 | MEDIUM | 4.4 | 0.3% | Aug 11, 2021 | Improper buffer restrictions in the firmware of Intel(R) Ethernet Adapters 800 Series Controllers and associated adapter... |
| CVE-2021-0003 | MEDIUM | 5.5 | 0.3% | Aug 11, 2021 | Improper conditions check in some Intel(R) Ethernet Controllers 800 series Linux drivers before version 1.4.11 may allow... |
| CVE-2021-38538 | MEDIUM | 6.1 | 0.4% | Aug 11, 2021 | Certain NETGEAR devices are affected by stored XSS. This affects D7800 before 1.0.1.56, R7800 before 1.0.2.68, R8900 bef... |
| CVE-2021-38537 | MEDIUM | 4.8 | 0.4% | Aug 11, 2021 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 be... |
| CVE-2021-38536 | MEDIUM | 4.8 | 0.5% | Aug 11, 2021 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 be... |
| CVE-2021-38535 | MEDIUM | 4.8 | 0.5% | Aug 11, 2021 | Certain NETGEAR devices are affected by stored XSS. This affects D6200 before 1.1.00.40, D7000 before 1.0.1.78, R6020 be... |
| CVE-2021-38534 | MEDIUM | 4.8 | 0.5% | Aug 11, 2021 | Certain NETGEAR devices are affected by stored XSS. This affects D3600 before 1.0.0.76, D6000 before 1.0.0.76, D6100 bef... |
| CVE-2021-38533 | MEDIUM | 5.4 | 0.5% | Aug 11, 2021 | NETGEAR RAX40 devices before 1.0.3.64 are affected by stored XSS. |
| CVE-2021-38524 | MEDIUM | 4.9 | 0.9% | Aug 11, 2021 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects MK62 before... |
| CVE-2021-29400 | MEDIUM | 6.5 | 0.6% | Aug 10, 2021 | A cross-site request forgery (CSRF) vulnerability in the My SMTP Contact v1.1.1 plugin for GetSimple CMS allows remote a... |
| CVE-2021-37391 | MEDIUM | 5.4 | 2.1% | Aug 10, 2021 | A user without privileges in Chamilo LMS 1.11.14 can send an invitation message to another user, e.g., the administrator... |
| CVE-2021-37390 | MEDIUM | 6.1 | 0.8% | Aug 10, 2021 | A Chamilo LMS 1.11.14 reflected XSS vulnerability exists in main/social/search.php=q URI (social network search feature)... |
| CVE-2021-37389 | MEDIUM | 6.1 | 1.0% | Aug 10, 2021 | Chamilo 1.11.14 allows stored XSS via main/install/index.php and main/install/ajax.php through the port parameter. |
| CVE-2021-28846 | MEDIUM | 6.5 | 0.8% | Aug 10, 2021 | A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TE... |
| CVE-2021-21600 | MEDIUM | 6.5 | 0.8% | Aug 10, 2021 | Dell EMC NetWorker, 19.4 or older, contain an uncontrolled resource consumption flaw in its API service. An authorized A... |
| CVE-2021-38382 | MEDIUM | 6.5 | 1.2% | Aug 10, 2021 | Live555 through 1.08 does not handle Matroska and Ogg files properly. Sending two successive RTSP SETUP commands for the... |
| CVE-2021-38381 | MEDIUM | 6.5 | 1.2% | Aug 10, 2021 | Live555 through 1.08 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now