2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-4360HIGH8.8The Controlled Admin Access plugin for WordPress is vulnerable to Privilege Escalation in versions up to, and including,...
CVE-2021-4354HIGH8.8The PWA for WP & AMP for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the pw...
CVE-2021-4349HIGH8.8The Process Steps Template Designer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, ...
CVE-2021-4346HIGH7.5The uListing plugin for WordPress is vulnerable to Unauthenticated Arbitrary Account Changes in versions up to, and incl...
CVE-2021-4340HIGH7.5The uListing plugin for WordPress is vulnerable to generic SQL Injection via the ‘listing_id’ parameter in versions up t...
CVE-2021-33223HIGH8.8An issue discovered in SeedDMS 6.0.15 allows an attacker to escalate privileges via the userid and role parameters in th...
CVE-2021-31233HIGH7.5SQL Injection vulnerability found in Fighting Cock Information System v.1.0 allows a remote attacker to obtain sensitive...
CVE-2021-27825HIGH7.5A directory traversal vulnerability on Mercury MAC1200R devices allows attackers to read arbitrary files via a web-stati...
CVE-2021-46886HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46885HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46884HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46883HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46882HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-46881HIGH7.5The video framework has memory overwriting caused by addition overflow. Successful exploitation of this vulnerability ma...
CVE-2021-25749HIGH7.8Windows workloads can run as ContainerAdministrator even when those workloads set the runAsNonRoot option to true.
CVE-2021-34076HIGH8.8File Upload vulnerability in PHPOK 5.7.140 allows remote attackers to run arbitrary code and gain escalated privileges v...
CVE-2021-45345HIGH7.5Buffer Overflow vulnerability found in En3rgy WebcamServer v.0.5.2 allows a remote attacker to cause a denial of service...
CVE-2021-46794HIGH7.5Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management...
CVE-2021-46773HIGH8.8Insufficient input validation in ABL may enable a privileged attacker to corrupt ASP memory, potentially resulting in a ...
CVE-2021-46765HIGH7.5Insufficient input validation in ASP may allow an attacker with a compromised SMM to induce out-of-bounds memory reads w...
CVE-2021-46755HIGH7.5Failure to unmap certain SysHub mappings in error paths of the ASP (AMD Secure Processor) bootloader may allow an attack...
CVE-2021-46769HIGH8.8Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to execute arbitrary DMA cop...
CVE-2021-46764HIGH7.5Improper validation of DRAM addresses in SMU may allow an attacker to overwrite sensitive memory locations within the AS...
CVE-2021-46763HIGH7.5Insufficient input validation in the SMU may enable a privileged attacker to write beyond the intended bounds of a share...
CVE-2021-46749HIGH7.5Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now