2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40010 | CRITICAL | 9.8 | 1.2% | Jan 10, 2022 | The bone voice ID TA has a heap overflow vulnerability.Successful exploitation of this vulnerability may result in malic... |
| CVE-2021-40009 | MEDIUM | 5.3 | 0.7% | Jan 10, 2022 | There is an Out-of-bounds write vulnerability in the AOD module in smartphones. Successful exploitation of this vulnerab... |
| CVE-2021-40006 | MEDIUM | 4.6 | 0.1% | Jan 10, 2022 | Vulnerability of design defects in the security algorithm component. Successful exploitation of this vulnerability may a... |
| CVE-2021-40005 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | The distributed data service component has a vulnerability in data access control. Successful exploitation of this vulne... |
| CVE-2021-40004 | HIGH | 7.5 | 0.6% | Jan 10, 2022 | The cellular module has a vulnerability in permission management. Successful exploitation of this vulnerability may affe... |
| CVE-2021-40003 | MEDIUM | 5.3 | 0.6% | Jan 10, 2022 | HwPCAssistant has a path traversal vulnerability. Successful exploitation of this vulnerability may affect data confiden... |
| CVE-2021-40002 | HIGH | 8.8 | 0.4% | Jan 10, 2022 | The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result ... |
| CVE-2021-40001 | MEDIUM | 5.3 | 0.8% | Jan 10, 2022 | The CaasKit module has a path traversal vulnerability. Successful exploitation of this vulnerability may cause the MeeTi... |
| CVE-2021-40000 | HIGH | 8.8 | 0.4% | Jan 10, 2022 | The Bluetooth module has an out-of-bounds write vulnerability. Successful exploitation of this vulnerability may result ... |
| CVE-2021-39998 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | There is Vulnerability of APIs being concurrently called for multiple times in HwConnectivityExService a in smartphones.... |
| CVE-2021-39996 | CRITICAL | 9.8 | 0.8% | Jan 10, 2022 | There is a Heap-based buffer overflow vulnerability with the NFC module in smartphones. Successful exploitation of this ... |
| CVE-2021-39993 | CRITICAL | 9.8 | 0.8% | Jan 10, 2022 | There is an Integer overflow vulnerability with ACPU in smartphones. Successful exploitation of this vulnerability may c... |
| CVE-2021-38990 | HIGH | 7.8 | 0.3% | Jan 10, 2022 | IBM AIX 7.1, 7.2, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the mount command w... |
| CVE-2021-38957 | HIGH | 7.5 | 1.0% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclose sensitive information due to hazardous input validatio... |
| CVE-2021-38956 | MEDIUM | 5.3 | 0.9% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could disclose sensitive version information in HTTP response headers... |
| CVE-2021-38921 | HIGH | 7.5 | 0.7% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 uses weaker than expected cryptographic algorithms that could allow a... |
| CVE-2021-38895 | MEDIUM | 5.4 | 0.4% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 is vulnerable to cross-site scripting. This vulnerability allows user... |
| CVE-2021-38894 | LOW | 2.7 | 0.9% | Jan 10, 2022 | IBM Security Verify 10.0.0, 10.0.1.0, and 10.0.2.0 could allow a remote attacker to obtain sensitive information when a ... |
| CVE-2021-35247 | MEDIUM | 5.3 | 3.4% | Jan 10, 2022 | Serv-U web login screen to LDAP authentication was allowing characters that were not sufficiently sanitized. SolarWinds ... |
| CVE-2021-34087 | HIGH | 7.1 | 0.8% | Jan 10, 2022 | In Ultimaker S3 3D printer, Ultimaker S5 3D printer, Ultimaker 3 3D printer S-line through 6.3 and Ultimaker 3 through 5... |
| CVE-2021-34086 | HIGH | 8.8 | 0.5% | Jan 10, 2022 | In Ultimaker S3 3D printer, Ultimaker S5 3D printer, Ultimaker 3 3D printer S-line through 6.3 and Ultimaker 3 through 5... |
| CVE-2021-32998 | HIGH | 7.4 | 1.2% | Jan 10, 2022 | The FANUC R-30iA and R-30iB series controllers are vulnerable to an out-of-bounds write, which may allow an attacker to ... |
| CVE-2021-32996 | HIGH | 7.5 | 1.1% | Jan 10, 2022 | The FANUC R-30iA and R-30iB series controllers are vulnerable to integer coercion errors, which cause the device to cras... |
| CVE-2021-30360 | HIGH | 7.8 | 0.6% | Jan 10, 2022 | Users have access to the directory where the installation repair occurs. Since the MS Installer allows regular users to ... |
| CVE-2021-23594 | CRITICAL | 10 | 1.8% | Jan 10, 2022 | All versions of package realms-shim are vulnerable to Sandbox Bypass via a Prototype Pollution attack vector. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now