2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-32946HIGH7.8An improper check for unusual or exceptional conditions issue exists within the parsing DGN files from Drawings SDK (Ver...
CVE-2021-32582HIGH7.5An issue was discovered in ConnectWise Automate before 2021.5. A blind SQL injection vulnerability exists in core agent ...
CVE-2021-0143HIGH7.8Improper permissions in the installer for the Intel(R) Brand Verification Tool before version 11.0.0.1225 may allow an a...
CVE-2021-31477HIGH7.3This vulnerability allows remote attackers to execute arbitrary code on affected installations of GE Reason RPV311 14A03...
CVE-2021-31476HIGH7.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1....
CVE-2021-32690HIGH8.6Helm is a tool for managing Charts (packages of pre-configured Kubernetes resources). In versions of helm prior to 3.6.1...
CVE-2021-32243HIGH8.8FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated).
CVE-2021-34203HIGH8.1D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control. Router ac2600 (dir-2640-us), when setting PPPoE, w...
CVE-2021-34201HIGH7.1D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are multiple out-of-bounds vulnerabilities in some pr...
CVE-2021-34202HIGH7.8There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640) 1.01B04. Ordinary permissi...
CVE-2021-34551HIGH8.1PHPMailer before 6.5.0 on Windows allows remote code execution if lang_path is untrusted data and has a UNC pathname.
CVE-2021-1566HIGH7.4A vulnerability in the Cisco Advanced Malware Protection (AMP) for Endpoints integration of Cisco AsyncOS for Cisco Emai...
CVE-2021-1542HIGH8.1Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-1541HIGH7.2Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a...
CVE-2021-29702HIGH7.5Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1.4 and 11.5.5 is vulnerable to a denial of service as ...
CVE-2021-20566HIGH7.5IBM Resilient SOAR V38.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt high...
CVE-2021-34803HIGH7.8TeamViewer before 14.7.48644 on Windows loads untrusted DLLs in certain situations.
CVE-2021-22914HIGH7.5Citrix Cloud Connector before 6.31.0.62192 suffers from insecure storage of sensitive information due to sensitive infor...
CVE-2021-27485HIGH7.5ZOLL Defibrillator Dashboard, v prior to 2.2,The application allows users to store their passwords in a recoverable form...
CVE-2021-27483HIGH7.8ZOLL Defibrillator Dashboard, v prior to 2.2,The affected products contain insecure filesystem permissions that could al...
CVE-2021-33813HIGH7.5An XXE issue in SAXBuilder in JDOM through 2.0.6 allows attackers to cause a denial of service via a crafted HTTP reques...
CVE-2021-32612HIGH8.1The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cl...
CVE-2021-30468HIGH7.5A vulnerability in the JsonMapObjectReaderWriter of Apache CXF allows an attacker to submit malformed JSON to a web serv...
CVE-2021-27489HIGH8.8ZOLL Defibrillator Dashboard, v prior to 2.2, The web application allows a non-administrative user to upload a malicious...
CVE-2021-20094HIGH7.5A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now