2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-35063HIGH7.5Suricata before 5.0.7 and 6.x before 6.0.3 has a "critical evasion."
CVE-2021-29657HIGH7.4arch/x86/kvm/svm/nested.c in the Linux kernel before 5.11.12 has a use-after-free in which an AMD KVM guest can bypass a...
CVE-2021-26764HIGH8.8SQL injection vulnerability in PHPGurukul Student Record System v 4.0 allows remote attackers to execute arbitrary SQL s...
CVE-2021-26762HIGH8.8SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL sta...
CVE-2021-1618HIGH7.2Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an auth...
CVE-2021-1601HIGH8.3Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce...
CVE-2021-1600HIGH8.3Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce...
CVE-2021-1518HIGH8.8A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, re...
CVE-2021-29143HIGH7.2A remote execution of arbitrary commands vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch...
CVE-2021-22001HIGH7.5In UAA versions prior to 75.3.0, sensitive information like relaying secret of the provider was revealed in response whe...
CVE-2021-30110HIGH7.5dttray.exe in Greyware Automation Products Inc Domain Time II before 5.2.b.20210331 allows remote attackers to execute a...
CVE-2021-30486HIGH8.8SysAid 20.3.64 b14 is affected by Blind and Stacker SQL injection via AssetManagementChart.jsp (GET computerID), AssetMa...
CVE-2021-22523HIGH7.6XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier ...
CVE-2021-22522HIGH7.1Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Up...
CVE-2021-20596HIGH7.5NULL Pointer Dereference in MELSEC-F Series FX3U-ENET firmware version 1.14 and prior, FX3U-ENET-L firmware version 1.14...
CVE-2021-28131HIGH7.5Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user. However, these se...
CVE-2021-36934HIGH7.8An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple syst...
CVE-2021-1092HIGH7.1NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susce...
CVE-2021-1091HIGH7.1NVIDIA GPU Display driver for Windows contains a vulnerability where an unprivileged user can create a file hard link th...
CVE-2021-1090HIGH7.1NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler...
CVE-2021-1089HIGH7.8NVIDIA GPU Display Driver for Windows contains a vulnerability in nvidia-smi where an uncontrolled DLL loading path may ...
CVE-2021-32776HIGH8.8Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.4, CSRF tokens can be reused by a malic...
CVE-2021-32761HIGH7.5Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow ...
CVE-2021-32756HIGH8.8ManageIQ is an open-source management platform. In versions prior to jansa-4, kasparov-2, and lasker-1, there is a flaw ...
CVE-2021-35482HIGH7.8An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to ac...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now