2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-29105MEDIUM5.4A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server Services Directory version 10.8.1 and below may ...
CVE-2021-29104MEDIUM6.1A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u...
CVE-2021-29103MEDIUM6.1A reflected Cross Site Scripting (XXS) vulnerability in ArcGIS Server version 10.8.1 and below may allow a remote attack...
CVE-2021-29107MEDIUM6.1A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u...
CVE-2021-29106MEDIUM6.1A reflected Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server version 10.8.1 and below may allow a remote a...
CVE-2021-35361MEDIUM4.8A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/links of dotCMS 21.05.1 allows attackers to execute...
CVE-2021-35360MEDIUM4.8A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/containers of dotCMS 21.05.1 allows attackers to ex...
CVE-2021-35358MEDIUM4.8A stored cross site scripting (XSS) vulnerability in dotAdmin/#/c/c_Images of dotCMS 21.05.1 allows authenticated attack...
CVE-2021-33214MEDIUM6.1In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could l...
CVE-2021-32753MEDIUM6.5EdgeX Foundry is an open source project for building a common open framework for internet-of-things edge computing. A vu...
CVE-2021-33795MEDIUM5.5Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 produce incorrect PDF document signatures because the certificat...
CVE-2021-3541MEDIUM6.5A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanis...
CVE-2021-29712MEDIUM6.1IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a...
CVE-2021-32752MEDIUM4.9Ether Logs is a package that allows one to check one's logs in the Craft 3 utilities section. A vulnerability was found ...
CVE-2021-30121MEDIUM6.5Semi-authenticated local file inclusion The contents of arbitrary files can be returned by the webserver Example request...
CVE-2021-30119MEDIUM5.4Authenticated reflective XSS in HelpDeskTab/rcResults.asp The parameter result of /HelpDeskTab/rcResults.asp is insecure...
CVE-2021-32972MEDIUM5.5Panasonic FPWIN Pro, all Versions 7.5.1.1 and prior, allows an attacker to craft a project file specifying a URI that ca...
CVE-2021-34616MEDIUM6.3A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to...
CVE-2021-34615MEDIUM6.3A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to...
CVE-2021-34613MEDIUM6.3A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to...
CVE-2021-34612MEDIUM6.3A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to...
CVE-2021-1607MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2021-1606MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2021-1605MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...
CVE-2021-1604MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now