2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-33532 | HIGH | 8.8 | 1.7% | Jun 25, 2021 | In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the... |
| CVE-2021-33531 | HIGH | 8.8 | 0.7% | Jun 25, 2021 | In Weidmueller Industrial WLAN devices in multiple versions an exploitable use of hard-coded credentials vulnerability e... |
| CVE-2021-33530 | HIGH | 8.8 | 1.7% | Jun 25, 2021 | In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in enc... |
| CVE-2021-33529 | HIGH | 7.5 | 0.9% | Jun 25, 2021 | In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the servic... |
| CVE-2021-33528 | HIGH | 8.8 | 1.1% | Jun 25, 2021 | In Weidmueller Industrial WLAN devices in multiple versions an exploitable privilege escalation vulnerability exists in ... |
| CVE-2021-21005 | HIGH | 7.5 | 0.7% | Jun 25, 2021 | In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet wi... |
| CVE-2021-21002 | HIGH | 7.5 | 1.0% | Jun 25, 2021 | In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denia... |
| CVE-2021-34185 | HIGH | 7.8 | 0.7% | Jun 25, 2021 | Miniaudio 0.10.35 has an integer-based buffer overflow caused by an out-of-bounds left shift in drwav_bytes_to_u32 in mi... |
| CVE-2021-33895 | HIGH | 8.1 | 0.9% | Jun 25, 2021 | ETINET BACKBOX E4.09 and H4.09 mismanages password access control. When a user uses the User ID of the process running B... |
| CVE-2021-27043 | HIGH | 7.8 | 0.9% | Jun 25, 2021 | An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application ... |
| CVE-2021-27042 | HIGH | 7.8 | 1.8% | Jun 25, 2021 | A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerabili... |
| CVE-2021-27041 | HIGH | 7.8 | 1.7% | Jun 25, 2021 | A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerabil... |
| CVE-2021-35050 | HIGH | 7.5 | 1.0% | Jun 25, 2021 | User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an a... |
| CVE-2021-35049 | HIGH | 8.8 | 4.6% | Jun 25, 2021 | Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter... |
| CVE-2021-35047 | HIGH | 8.8 | 1.6% | Jun 25, 2021 | Vulnerability in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker ... |
| CVE-2021-32717 | HIGH | 7.5 | 1.5% | Jun 24, 2021 | Shopware is an open source eCommerce platform. In versions prior to 6.4.1.1 private files publicly accessible with Cloud... |
| CVE-2021-35448 | HIGH | 7.8 | 1.0% | Jun 24, 2021 | Emote Interactive Remote Mouse 3.008 on Windows allows attackers to execute arbitrary programs as Administrator by using... |
| CVE-2021-32711 | HIGH | 7.5 | 1.4% | Jun 24, 2021 | Shopware is an open source eCommerce platform. Versions prior to 6.3.5.1 may leak of information via Store-API. The vuln... |
| CVE-2021-32710 | HIGH | 7.5 | 0.9% | Jun 24, 2021 | Shopware is an open source eCommerce platform. Potential session hijacking of store customers in versions below 6.3.5.2.... |
| CVE-2021-3500 | HIGH | 7.8 | 0.9% | Jun 24, 2021 | A flaw was found in djvulibre-3.5.28 and earlier. A Stack overflow in function DJVU::DjVuDocument::get_djvu_file() via c... |
| CVE-2021-32493 | HIGH | 7.8 | 1.0% | Jun 24, 2021 | A flaw was found in djvulibre-3.5.28 and earlier. A heap buffer overflow in function DJVU::GBitmap::decode() via crafted... |
| CVE-2021-32492 | HIGH | 7.8 | 0.9% | Jun 24, 2021 | A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds read in function DJVU::DataPool::has_data() via craft... |
| CVE-2021-32491 | HIGH | 7.8 | 0.9% | Jun 24, 2021 | A flaw was found in djvulibre-3.5.28 and earlier. An integer overflow in function render() in tools/ddjvu via crafted dj... |
| CVE-2021-32490 | HIGH | 7.8 | 0.9% | Jun 24, 2021 | A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds write in function DJVU::filter_bv() via crafted djvu ... |
| CVE-2021-29703 | HIGH | 7.5 | 1.7% | Jun 24, 2021 | Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to a denial of service as the server termina... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now