2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-33532HIGH8.8In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in the...
CVE-2021-33531HIGH8.8In Weidmueller Industrial WLAN devices in multiple versions an exploitable use of hard-coded credentials vulnerability e...
CVE-2021-33530HIGH8.8In Weidmueller Industrial WLAN devices in multiple versions an exploitable command injection vulnerability exists in enc...
CVE-2021-33529HIGH7.5In Weidmueller Industrial WLAN devices in multiple versions the usage of hard-coded cryptographic keys within the servic...
CVE-2021-33528HIGH8.8In Weidmueller Industrial WLAN devices in multiple versions an exploitable privilege escalation vulnerability exists in ...
CVE-2021-21005HIGH7.5In Phoenix Contact FL SWITCH SMCS series products in multiple versions if an attacker sends a hand-crafted TCP-Packet wi...
CVE-2021-21002HIGH7.5In Phoenix Contact FL COMSERVER UNI in versions < 2.40 a invalid Modbus exception response can lead to a temporary denia...
CVE-2021-34185HIGH7.8Miniaudio 0.10.35 has an integer-based buffer overflow caused by an out-of-bounds left shift in drwav_bytes_to_u32 in mi...
CVE-2021-33895HIGH8.1ETINET BACKBOX E4.09 and H4.09 mismanages password access control. When a user uses the User ID of the process running B...
CVE-2021-27043HIGH7.8An Arbitrary Address Write issue in the Autodesk DWG application can allow a malicious user to leverage the application ...
CVE-2021-27042HIGH7.8A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. The vulnerabili...
CVE-2021-27041HIGH7.8A maliciously crafted DWG file can be used to write beyond the allocated buffer while parsing DWG files. This vulnerabil...
CVE-2021-35050HIGH7.5User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an a...
CVE-2021-35049HIGH8.8Vulnerability in Fidelis Network and Deception CommandPost enables authenticated command injection through the web inter...
CVE-2021-35047HIGH8.8Vulnerability in the CommandPost, Collector, and Sensor components of Fidelis Network and Deception enables an attacker ...
CVE-2021-32717HIGH7.5Shopware is an open source eCommerce platform. In versions prior to 6.4.1.1 private files publicly accessible with Cloud...
CVE-2021-35448HIGH7.8Emote Interactive Remote Mouse 3.008 on Windows allows attackers to execute arbitrary programs as Administrator by using...
CVE-2021-32711HIGH7.5Shopware is an open source eCommerce platform. Versions prior to 6.3.5.1 may leak of information via Store-API. The vuln...
CVE-2021-32710HIGH7.5Shopware is an open source eCommerce platform. Potential session hijacking of store customers in versions below 6.3.5.2....
CVE-2021-3500HIGH7.8A flaw was found in djvulibre-3.5.28 and earlier. A Stack overflow in function DJVU::DjVuDocument::get_djvu_file() via c...
CVE-2021-32493HIGH7.8A flaw was found in djvulibre-3.5.28 and earlier. A heap buffer overflow in function DJVU::GBitmap::decode() via crafted...
CVE-2021-32492HIGH7.8A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds read in function DJVU::DataPool::has_data() via craft...
CVE-2021-32491HIGH7.8A flaw was found in djvulibre-3.5.28 and earlier. An integer overflow in function render() in tools/ddjvu via crafted dj...
CVE-2021-32490HIGH7.8A flaw was found in djvulibre-3.5.28 and earlier. An out of bounds write in function DJVU::filter_bv() via crafted djvu ...
CVE-2021-29703HIGH7.5Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) is vulnerable to a denial of service as the server termina...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now