2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-32946 | HIGH | 7.8 | 2.8% | Jun 17, 2021 | An improper check for unusual or exceptional conditions issue exists within the parsing DGN files from Drawings SDK (Ver... |
| CVE-2021-32582 | HIGH | 7.5 | 1.1% | Jun 17, 2021 | An issue was discovered in ConnectWise Automate before 2021.5. A blind SQL injection vulnerability exists in core agent ... |
| CVE-2021-0143 | HIGH | 7.8 | 0.2% | Jun 17, 2021 | Improper permissions in the installer for the Intel(R) Brand Verification Tool before version 11.0.0.1225 may allow an a... |
| CVE-2021-31477 | HIGH | 7.3 | 2.6% | Jun 16, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of GE Reason RPV311 14A03... |
| CVE-2021-31476 | HIGH | 7.8 | 6.0% | Jun 16, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.1.... |
| CVE-2021-32690 | HIGH | 8.6 | 1.4% | Jun 16, 2021 | Helm is a tool for managing Charts (packages of pre-configured Kubernetes resources). In versions of helm prior to 3.6.1... |
| CVE-2021-32243 | HIGH | 8.8 | 1.1% | Jun 16, 2021 | FOGProject v1.5.9 is affected by a File Upload RCE (Authenticated). |
| CVE-2021-34203 | HIGH | 8.1 | 1.6% | Jun 16, 2021 | D-Link DIR-2640-US 1.01B04 is vulnerable to Incorrect Access Control. Router ac2600 (dir-2640-us), when setting PPPoE, w... |
| CVE-2021-34201 | HIGH | 7.1 | 0.6% | Jun 16, 2021 | D-Link DIR-2640-US 1.01B04 is vulnerable to Buffer Overflow. There are multiple out-of-bounds vulnerabilities in some pr... |
| CVE-2021-34202 | HIGH | 7.8 | 4.4% | Jun 16, 2021 | There are multiple out-of-bounds vulnerabilities in some processes of D-Link AC2600(DIR-2640) 1.01B04. Ordinary permissi... |
| CVE-2021-34551 | HIGH | 8.1 | 2.8% | Jun 16, 2021 | PHPMailer before 6.5.0 on Windows allows remote code execution if lang_path is untrusted data and has a UNC pathname. |
| CVE-2021-1566 | HIGH | 7.4 | 0.7% | Jun 16, 2021 | A vulnerability in the Cisco Advanced Malware Protection (AMP) for Endpoints integration of Cisco AsyncOS for Cisco Emai... |
| CVE-2021-1542 | HIGH | 8.1 | 1.4% | Jun 16, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a... |
| CVE-2021-1541 | HIGH | 7.2 | 8.8% | Jun 16, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could a... |
| CVE-2021-29702 | HIGH | 7.5 | 1.9% | Jun 16, 2021 | Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1.4 and 11.5.5 is vulnerable to a denial of service as ... |
| CVE-2021-20566 | HIGH | 7.5 | 0.7% | Jun 16, 2021 | IBM Resilient SOAR V38.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt high... |
| CVE-2021-34803 | HIGH | 7.8 | 0.5% | Jun 16, 2021 | TeamViewer before 14.7.48644 on Windows loads untrusted DLLs in certain situations. |
| CVE-2021-22914 | HIGH | 7.5 | 1.1% | Jun 16, 2021 | Citrix Cloud Connector before 6.31.0.62192 suffers from insecure storage of sensitive information due to sensitive infor... |
| CVE-2021-27485 | HIGH | 7.5 | 1.2% | Jun 16, 2021 | ZOLL Defibrillator Dashboard, v prior to 2.2,The application allows users to store their passwords in a recoverable form... |
| CVE-2021-27483 | HIGH | 7.8 | 0.2% | Jun 16, 2021 | ZOLL Defibrillator Dashboard, v prior to 2.2,The affected products contain insecure filesystem permissions that could al... |
| CVE-2021-33813 | HIGH | 7.5 | 19.4% | Jun 16, 2021 | An XXE issue in SAXBuilder in JDOM through 2.0.6 allows attackers to cause a denial of service via a crafted HTTP reques... |
| CVE-2021-32612 | HIGH | 8.1 | 1.1% | Jun 16, 2021 | The VeryFitPro (com.veryfit2hr.second) application 3.2.8 for Android does all communication with the backend API over cl... |
| CVE-2021-30468 | HIGH | 7.5 | 7.0% | Jun 16, 2021 | A vulnerability in the JsonMapObjectReaderWriter of Apache CXF allows an attacker to submit malformed JSON to a web serv... |
| CVE-2021-27489 | HIGH | 8.8 | 1.3% | Jun 16, 2021 | ZOLL Defibrillator Dashboard, v prior to 2.2, The web application allows a non-administrative user to upload a malicious... |
| CVE-2021-20094 | HIGH | 7.5 | 4.7% | Jun 16, 2021 | A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now