2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0291 | MEDIUM | 6.5 | 1.0% | Jul 15, 2021 | An Exposure of System Data vulnerability in Juniper Networks Junos OS and Junos OS Evolved, where a sensitive system-lev... |
| CVE-2021-0290 | MEDIUM | 6.5 | 0.4% | Jul 15, 2021 | Improper Handling of Exceptional Conditions in Ethernet interface frame processing of Juniper Networks Junos OS allows a... |
| CVE-2021-0289 | MEDIUM | 5.3 | 0.3% | Jul 15, 2021 | When user-defined ARP Policer is configured and applied on one or more Aggregated Ethernet (AE) interface units, a Time-... |
| CVE-2021-0288 | MEDIUM | 6.5 | 0.4% | Jul 15, 2021 | A vulnerability in the processing of specific MPLS packets in Juniper Networks Junos OS on MX Series and EX9200 Series d... |
| CVE-2021-0287 | MEDIUM | 6.5 | 0.4% | Jul 15, 2021 | In a Segment Routing ISIS (SR-ISIS)/MPLS environment, on Juniper Networks Junos OS and Junos OS Evolved devices, configu... |
| CVE-2021-0279 | MEDIUM | 5.5 | 0.6% | Jul 15, 2021 | Juniper Networks Contrail Cloud (CC) releases prior to 13.6.0 have RabbitMQ service enabled by default with hardcoded cr... |
| CVE-2021-35056 | MEDIUM | 6.7 | 0.3% | Jul 15, 2021 | Unisys Stealth 5.1 before 5.1.025.0 and 6.0 before 6.0.055.0 has an unquoted Windows search path for a scheduled task. A... |
| CVE-2021-29699 | MEDIUM | 6.8 | 0.9% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 could allow a remote priviled user to upload arbitrary files with a dangerous f... |
| CVE-2021-20537 | MEDIUM | 6.5 | 0.7% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 contains hard-coded credentials, such as a password or cryptographic key, which... |
| CVE-2021-20524 | MEDIUM | 4.8 | 0.5% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed... |
| CVE-2021-20511 | MEDIUM | 4.9 | 1.9% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to traverse directories on the system. An attacke... |
| CVE-2021-20510 | MEDIUM | 4.4 | 0.5% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by a local user. ... |
| CVE-2021-20500 | MEDIUM | 4.4 | 0.3% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 could reveal highly sensitive information to a local privileged user. IBM X-For... |
| CVE-2021-20498 | MEDIUM | 5.3 | 0.9% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 reveals version information in HTTP requests that could be used in further atta... |
| CVE-2021-20496 | MEDIUM | 4.9 | 0.6% | Jul 15, 2021 | IBM Security Verify Access Docker 10.0.0 could allow an authenticated user to bypass input due to improper input validat... |
| CVE-2021-3043 | MEDIUM | 4.8 | 0.6% | Jul 15, 2021 | A reflected cross-site scripting (XSS) vulnerability exists in the Prisma Cloud Compute web console that enables a remot... |
| CVE-2021-34429 | MEDIUM | 5.3 | 99.3% | Jul 15, 2021 | For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characte... |
| CVE-2021-32750 | MEDIUM | 5.7 | 0.8% | Jul 15, 2021 | MuWire is a file publishing and networking tool that protects the identity of its users by using I2P technology. Users o... |
| CVE-2021-21586 | MEDIUM | 6.5 | 4.0% | Jul 15, 2021 | Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability. A remote authenticated ... |
| CVE-2021-29749 | MEDIUM | 5.4 | 0.8% | Jul 15, 2021 | IBM Secure External Authentication Server 6.0.2 and IBM Secure Proxy 6.0.2 is vulnerable to server-side request forgery ... |
| CVE-2021-27847 | MEDIUM | 6.5 | 1.0% | Jul 15, 2021 | Division-By-Zero vulnerability in Libvips 8.10.5 in the function vips_eye_point, eye.c#L83, and function vips_mask_point... |
| CVE-2021-27845 | MEDIUM | 5.5 | 0.6% | Jul 15, 2021 | A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c |
| CVE-2021-34689 | MEDIUM | 5.5 | 0.3% | Jul 15, 2021 | iDrive RemotePC before 7.6.48 on Windows allows information disclosure. A locally authenticated attacker can read the sy... |
| CVE-2021-34687 | MEDIUM | 5.3 | 0.2% | Jul 15, 2021 | iDrive RemotePC before 7.6.48 on Windows allows information disclosure. A man in the middle can recover a system's Perso... |
| CVE-2021-34558 | MEDIUM | 6.5 | 7.0% | Jul 15, 2021 | The crypto/tls package of Go through 1.16.5 does not properly assert that the type of public key in an X.509 certificate... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now