2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-45003 | CRITICAL | 9.8 | 3.0% | Jan 10, 2022 | Laundry Booking Management System 1.0 (Latest) and previous versions are affected by a remote code execution (RCE) vulne... |
| CVE-2021-44528 | MEDIUM | 6.1 | 4.2% | Jan 10, 2022 | A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" ... |
| CVE-2021-44024 | HIGH | 7.1 | 0.4% | Jan 10, 2022 | A link following denial-of-service vulnerability in Trend Micro Apex One (on-prem and SaaS) and Trend Micro Worry-Free B... |
| CVE-2021-43579 | HIGH | 7.8 | 7.3% | Jan 10, 2022 | A stack-based buffer overflow in image_load_bmp() in HTMLDOC <= 1.9.13 results in remote code execution if the victim co... |
| CVE-2021-42749 | MEDIUM | 5.3 | 1.1% | Jan 10, 2022 | In Beaver Themer, attackers can bypass conditional logic controls (for hiding content) when viewing the post archives. E... |
| CVE-2021-42748 | MEDIUM | 5.3 | 1.0% | Jan 10, 2022 | In Beaver Builder through 2.5.0.3, attackers can bypass the visibility controls protection mechanism via the REST API. |
| CVE-2021-42392 | CRITICAL | 9.8 | 63.2% | Jan 10, 2022 | The org.h2.util.JdbcUtils.getConnection method of the H2 database takes as parameters the class name of the driver and U... |
| CVE-2021-40041 | MEDIUM | 4.2 | 0.2% | Jan 10, 2022 | There is a Cross-Site Scripting(XSS) vulnerability in HUAWEI WS318n product when processing network settings. Due to ins... |
| CVE-2021-40039 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | There is a Null pointer dereference vulnerability in the camera module in smartphones. Successful exploitation of this v... |
| CVE-2021-40038 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | There is a Double free vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerability may... |
| CVE-2021-40037 | MEDIUM | 5.5 | 0.2% | Jan 10, 2022 | There is a Vulnerability of accessing resources using an incompatible type (type confusion) in the MPTCP subsystem in sm... |
| CVE-2021-40035 | HIGH | 7.5 | 0.8% | Jan 10, 2022 | There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in ... |
| CVE-2021-40032 | HIGH | 7.5 | 0.9% | Jan 10, 2022 | The bone voice ID TA has a vulnerability in information management,Successful exploitation of this vulnerability may aff... |
| CVE-2021-40031 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | There is a Null pointer dereference vulnerability in the camera module in smartphones. Successful exploitation of this v... |
| CVE-2021-40029 | HIGH | 7.5 | 0.8% | Jan 10, 2022 | There is a Buffer overflow vulnerability due to a boundary error with the Samba server in the file management module in ... |
| CVE-2021-40028 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | The eID module has an out-of-bounds memory write vulnerability,Successful exploitation of this vulnerability may affect ... |
| CVE-2021-40027 | HIGH | 7.5 | 0.8% | Jan 10, 2022 | The bone voice ID TA has a vulnerability in calculating the buffer length,Successful exploitation of this vulnerability ... |
| CVE-2021-40026 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | There is a Heap-based buffer overflow vulnerability in the AOD module in smartphones. Successful exploitation of this vu... |
| CVE-2021-40025 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | The eID module has a vulnerability that causes the memory to be used without being initialized,Successful exploitation o... |
| CVE-2021-40022 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | The weaver module has a vulnerability in parameter type verification,Successful exploitation of this vulnerability may a... |
| CVE-2021-40021 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | The eID module has an out-of-bounds memory write vulnerability,Successful exploitation of this vulnerability may affect ... |
| CVE-2021-40020 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | There is an Out-of-bounds array read vulnerability in the security storage module in smartphones. Successful exploitatio... |
| CVE-2021-40018 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | The eID module has a null pointer reference vulnerability. Successful exploitation of this vulnerability may affect data... |
| CVE-2021-40014 | HIGH | 7.5 | 0.9% | Jan 10, 2022 | The bone voice ID trusted application (TA) has a heap overflow vulnerability. Successful exploitation of this vulnerabil... |
| CVE-2021-40011 | HIGH | 7.5 | 0.8% | Jan 10, 2022 | There is an uncontrolled resource consumption vulnerability in the display module. Successful exploitation of this vulne... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now