2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-29105 | MEDIUM | 5.4 | 0.6% | Jul 11, 2021 | A stored Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server Services Directory version 10.8.1 and below may ... |
| CVE-2021-29104 | MEDIUM | 6.1 | 0.8% | Jul 11, 2021 | A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u... |
| CVE-2021-29103 | MEDIUM | 6.1 | 0.7% | Jul 11, 2021 | A reflected Cross Site Scripting (XXS) vulnerability in ArcGIS Server version 10.8.1 and below may allow a remote attack... |
| CVE-2021-29107 | MEDIUM | 6.1 | 0.9% | Jul 10, 2021 | A stored Cross Site Scripting (XXS) vulnerability in ArcGIS Server Manager version 10.8.1 and below may allow a remote u... |
| CVE-2021-29106 | MEDIUM | 6.1 | 0.7% | Jul 10, 2021 | A reflected Cross Site Scripting (XSS) vulnerability in Esri ArcGIS Server version 10.8.1 and below may allow a remote a... |
| CVE-2021-35361 | MEDIUM | 4.8 | 0.6% | Jul 9, 2021 | A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/links of dotCMS 21.05.1 allows attackers to execute... |
| CVE-2021-35360 | MEDIUM | 4.8 | 0.6% | Jul 9, 2021 | A reflected cross site scripting (XSS) vulnerability in dotAdmin/#/c/containers of dotCMS 21.05.1 allows attackers to ex... |
| CVE-2021-35358 | MEDIUM | 4.8 | 0.5% | Jul 9, 2021 | A stored cross site scripting (XSS) vulnerability in dotAdmin/#/c/c_Images of dotCMS 21.05.1 allows authenticated attack... |
| CVE-2021-33214 | MEDIUM | 6.1 | 0.6% | Jul 9, 2021 | In HMS Ewon eCatcher through 6.6.4, weak filesystem permissions could allow malicious users to access files that could l... |
| CVE-2021-32753 | MEDIUM | 6.5 | 0.8% | Jul 9, 2021 | EdgeX Foundry is an open source project for building a common open framework for internet-of-things edge computing. A vu... |
| CVE-2021-33795 | MEDIUM | 5.5 | 0.8% | Jul 9, 2021 | Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 produce incorrect PDF document signatures because the certificat... |
| CVE-2021-3541 | MEDIUM | 6.5 | 1.9% | Jul 9, 2021 | A flaw was found in libxml2. Exponential entity expansion attack its possible bypassing all existing protection mechanis... |
| CVE-2021-29712 | MEDIUM | 6.1 | 0.7% | Jul 9, 2021 | IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed a... |
| CVE-2021-32752 | MEDIUM | 4.9 | 1.1% | Jul 9, 2021 | Ether Logs is a package that allows one to check one's logs in the Craft 3 utilities section. A vulnerability was found ... |
| CVE-2021-30121 | MEDIUM | 6.5 | 4.8% | Jul 9, 2021 | Semi-authenticated local file inclusion The contents of arbitrary files can be returned by the webserver Example request... |
| CVE-2021-30119 | MEDIUM | 5.4 | 52.7% | Jul 9, 2021 | Authenticated reflective XSS in HelpDeskTab/rcResults.asp The parameter result of /HelpDeskTab/rcResults.asp is insecure... |
| CVE-2021-32972 | MEDIUM | 5.5 | 0.7% | Jul 9, 2021 | Panasonic FPWIN Pro, all Versions 7.5.1.1 and prior, allows an attacker to craft a project file specifying a URI that ca... |
| CVE-2021-34616 | MEDIUM | 6.3 | 1.2% | Jul 8, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to... |
| CVE-2021-34615 | MEDIUM | 6.3 | 1.2% | Jul 8, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to... |
| CVE-2021-34613 | MEDIUM | 6.3 | 1.2% | Jul 8, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to... |
| CVE-2021-34612 | MEDIUM | 6.3 | 1.2% | Jul 8, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba ClearPass Policy Manager version(s): Prior to... |
| CVE-2021-1607 | MEDIUM | 4.8 | 0.6% | Jul 8, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2021-1606 | MEDIUM | 4.8 | 0.6% | Jul 8, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2021-1605 | MEDIUM | 4.8 | 0.6% | Jul 8, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
| CVE-2021-1604 | MEDIUM | 4.8 | 0.6% | Jul 8, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an au... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now