2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-35063 | HIGH | 7.5 | 2.0% | Jul 22, 2021 | Suricata before 5.0.7 and 6.x before 6.0.3 has a "critical evasion." |
| CVE-2021-29657 | HIGH | 7.4 | 0.4% | Jul 22, 2021 | arch/x86/kvm/svm/nested.c in the Linux kernel before 5.11.12 has a use-after-free in which an AMD KVM guest can bypass a... |
| CVE-2021-26764 | HIGH | 8.8 | 2.5% | Jul 22, 2021 | SQL injection vulnerability in PHPGurukul Student Record System v 4.0 allows remote attackers to execute arbitrary SQL s... |
| CVE-2021-26762 | HIGH | 8.8 | 2.3% | Jul 22, 2021 | SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL sta... |
| CVE-2021-1618 | HIGH | 7.2 | 2.7% | Jul 22, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an auth... |
| CVE-2021-1601 | HIGH | 8.3 | 0.4% | Jul 22, 2021 | Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce... |
| CVE-2021-1600 | HIGH | 8.3 | 0.4% | Jul 22, 2021 | Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce... |
| CVE-2021-1518 | HIGH | 8.8 | 1.9% | Jul 22, 2021 | A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, re... |
| CVE-2021-29143 | HIGH | 7.2 | 2.6% | Jul 22, 2021 | A remote execution of arbitrary commands vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch... |
| CVE-2021-22001 | HIGH | 7.5 | 1.0% | Jul 22, 2021 | In UAA versions prior to 75.3.0, sensitive information like relaying secret of the provider was revealed in response whe... |
| CVE-2021-30110 | HIGH | 7.5 | 2.0% | Jul 22, 2021 | dttray.exe in Greyware Automation Products Inc Domain Time II before 5.2.b.20210331 allows remote attackers to execute a... |
| CVE-2021-30486 | HIGH | 8.8 | 1.0% | Jul 22, 2021 | SysAid 20.3.64 b14 is affected by Blind and Stacker SQL injection via AssetManagementChart.jsp (GET computerID), AssetMa... |
| CVE-2021-22523 | HIGH | 7.6 | 0.8% | Jul 22, 2021 | XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier ... |
| CVE-2021-22522 | HIGH | 7.1 | 0.6% | Jul 22, 2021 | Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Up... |
| CVE-2021-20596 | HIGH | 7.5 | 2.2% | Jul 22, 2021 | NULL Pointer Dereference in MELSEC-F Series FX3U-ENET firmware version 1.14 and prior, FX3U-ENET-L firmware version 1.14... |
| CVE-2021-28131 | HIGH | 7.5 | 3.3% | Jul 22, 2021 | Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user. However, these se... |
| CVE-2021-36934 | HIGH | 7.8 | 67.3% | Jul 22, 2021 | An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple syst... |
| CVE-2021-1092 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susce... |
| CVE-2021-1091 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display driver for Windows contains a vulnerability where an unprivileged user can create a file hard link th... |
| CVE-2021-1090 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler... |
| CVE-2021-1089 | HIGH | 7.8 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in nvidia-smi where an uncontrolled DLL loading path may ... |
| CVE-2021-32776 | HIGH | 8.8 | 0.4% | Jul 21, 2021 | Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.4, CSRF tokens can be reused by a malic... |
| CVE-2021-32761 | HIGH | 7.5 | 31.0% | Jul 21, 2021 | Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow ... |
| CVE-2021-32756 | HIGH | 8.8 | 1.5% | Jul 21, 2021 | ManageIQ is an open-source management platform. In versions prior to jansa-4, kasparov-2, and lasker-1, there is a flaw ... |
| CVE-2021-35482 | HIGH | 7.8 | 0.4% | Jul 21, 2021 | An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to ac... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now