2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32773 | HIGH | 7.5 | 0.9% | Jul 20, 2021 | Racket is a general-purpose programming language and an ecosystem for language-oriented programming. In versions prior t... |
| CVE-2021-31590 | HIGH | 8.8 | 2.7% | Jul 19, 2021 | PwnDoc all versions until 0.4.0 (2021-08-23) has incorrect JSON Webtoken handling, leading to incorrect access control. ... |
| CVE-2021-34820 | HIGH | 7.5 | 4.0% | Jul 19, 2021 | Web Path Directory Traversal in the Novus HTTP Server. The Novus HTTP Server is affected by the Directory Traversal for ... |
| CVE-2021-36799 | HIGH | 8.8 | 0.4% | Jul 19, 2021 | KNX ETS5 through 5.7.6 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local use... |
| CVE-2021-34676 | HIGH | 7.5 | 1.8% | Jul 19, 2021 | Basix NEX-Forms through 7.8.7 allows authentication bypass for Excel report generation. |
| CVE-2021-34675 | HIGH | 7.5 | 1.8% | Jul 19, 2021 | Basix NEX-Forms through 7.8.7 allows authentication bypass for stored PDF reports. |
| CVE-2021-29707 | HIGH | 7.8 | 0.3% | Jul 19, 2021 | IBM HMC (Hardware Management Console) V9.1.910.0 and V9.2.950.0 could allow a local user to escalate their privileges to... |
| CVE-2021-35449 | HIGH | 7.8 | 1.4% | Jul 19, 2021 | The Lexmark Universal Print Driver version 2.15.1.0 and below, G2 driver 2.7.1.0 and below, G3 driver 3.2.0.0 and below,... |
| CVE-2021-20109 | HIGH | 7.5 | 1.4% | Jul 19, 2021 | Due to the Asset Explorer agent not validating HTTPS certificates, an attacker on the network can statically configure t... |
| CVE-2021-20108 | HIGH | 7.5 | 3.0% | Jul 19, 2021 | Manage Engine Asset Explorer Agent 1.0.34 listens on port 9000 for incoming commands over HTTPS from Manage Engine Serve... |
| CVE-2021-31216 | HIGH | 8.1 | 0.7% | Jul 19, 2021 | Siren Investigate before 11.1.1 contains a server side request forgery (SSRF) defect in the built-in image proxy route (... |
| CVE-2021-24453 | HIGH | 8.8 | 5.0% | Jul 19, 2021 | The Include Me WordPress plugin through 1.2.1 is vulnerable to path traversal / local file inclusion, which can lead to ... |
| CVE-2021-36773 | HIGH | 7.5 | 1.3% | Jul 18, 2021 | uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking... |
| CVE-2021-36213 | HIGH | 7.5 | 1.7% | Jul 17, 2021 | HashiCorp Consul and Consul Enterprise 1.9.0 through 1.10.0 default deny policy with a single L7 application-aware inten... |
| CVE-2021-32574 | HIGH | 7.5 | 1.5% | Jul 17, 2021 | HashiCorp Consul and Consul Enterprise 1.3.0 through 1.10.0 Envoy proxy TLS configuration does not validate destination ... |
| CVE-2021-3550 | HIGH | 7.8 | 0.2% | Jul 16, 2021 | A DLL search path vulnerability was reported in Lenovo PCManager, prior to version 3.0.500.5102, that could allow privil... |
| CVE-2021-34481 | HIGH | 8.8 | 45.4% | Jul 16, 2021 | A remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file ... |
| CVE-2021-34467 | HIGH | 7.1 | 5.4% | Jul 16, 2021 | Microsoft SharePoint Server Remote Code Execution Vulnerability |
| CVE-2021-34464 | HIGH | 7.8 | 2.9% | Jul 16, 2021 | Microsoft Defender Remote Code Execution Vulnerability |
| CVE-2021-34462 | HIGH | 7 | 0.8% | Jul 16, 2021 | Windows AppX Deployment Extensions Elevation of Privilege Vulnerability |
| CVE-2021-34461 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Container Isolation FS Filter Driver Elevation of Privilege Vulnerability |
| CVE-2021-34460 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Storage Spaces Controller Elevation of Privilege Vulnerability |
| CVE-2021-34459 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows AppContainer Elevation Of Privilege Vulnerability |
| CVE-2021-34456 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows Remote Access Connection Manager Elevation of Privilege Vulnerability |
| CVE-2021-34455 | HIGH | 7.8 | 0.5% | Jul 16, 2021 | Windows File History Service Elevation of Privilege Vulnerability |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now