2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-4360 | HIGH | 8.8 | 1.2% | Jun 7, 2023 | The Controlled Admin Access plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including,... |
| CVE-2021-4354 | HIGH | 8.8 | 1.8% | Jun 7, 2023 | The PWA for WP & AMP for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the pw... |
| CVE-2021-4349 | HIGH | 8.8 | 0.6% | Jun 7, 2023 | The Process Steps Template Designer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ... |
| CVE-2021-4346 | HIGH | 7.5 | 1.2% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to Unauthenticated Arbitrary Account Changes in versions up to, and incl... |
| CVE-2021-4340 | HIGH | 7.5 | 1.2% | Jun 7, 2023 | The uListing plugin for WordPress is vulnerable to generic SQL Injection via the ‘listing_id’ parameter in versions up t... |
| CVE-2021-33223 | HIGH | 8.8 | 0.8% | Jun 7, 2023 | An issue discovered in SeedDMS 6.0.15 allows an attacker to escalate privileges via the userid and role parameters in th... |
| CVE-2021-31233 | HIGH | 7.5 | 1.1% | May 31, 2023 | SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote attacker to obtain sensitive... |
| CVE-2021-27825 | HIGH | 7.5 | 7.8% | May 29, 2023 | A directory traversal vulnerability on Mercury MAC1200R devices allows attackers to read arbitrary files via a web-stati... |
| CVE-2021-46886 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-46885 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-46884 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-46883 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-46882 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-46881 | HIGH | 7.5 | 0.4% | May 26, 2023 | The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma... |
| CVE-2021-25749 | HIGH | 7.8 | 0.2% | May 24, 2023 | Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true. |
| CVE-2021-34076 | HIGH | 8.8 | 0.9% | May 11, 2023 | File Upload vulnerability in PHPOK 5.7.140 allows remote attackers to run arbitrary code and gain escalated privileges v... |
| CVE-2021-45345 | HIGH | 7.5 | 1.3% | May 10, 2023 | Buffer Overflow vulnerability found in En3rgy WebcamServer v.0.5.2 allows a remote attacker to cause a denial of service... |
| CVE-2021-46794 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management... |
| CVE-2021-46773 | HIGH | 8.8 | 0.8% | May 9, 2023 | Insufficient input validation in ABL may enable a privileged attacker to corrupt ASP memory, potentially resulting in a ... |
| CVE-2021-46765 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient input validation in ASP may allow an attacker with a compromised SMM to induce out-of-bounds memory reads w... |
| CVE-2021-46755 | HIGH | 7.5 | 0.6% | May 9, 2023 | Failure to unmap certain SysHub mappings in error paths of the ASP (AMD Secure Processor) bootloader may allow an attack... |
| CVE-2021-46769 | HIGH | 8.8 | 0.8% | May 9, 2023 | Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to execute arbitrary DMA cop... |
| CVE-2021-46764 | HIGH | 7.5 | 0.6% | May 9, 2023 | Improper validation of DRAM addresses in SMU may allow an attacker to overwrite sensitive memory locations within the AS... |
| CVE-2021-46763 | HIGH | 7.5 | 0.5% | May 9, 2023 | Insufficient input validation in the SMU may enable a privileged attacker to write beyond the intended bounds of a share... |
| CVE-2021-46749 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now