2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-23024HIGH7.2On version 8.0.x before 8.0.0.1, and all 6.x and 7.x versions, the BIG-IQ Configuration utility has an authenticated rem...
CVE-2021-23023HIGH7.8On version 7.2.1.x before 7.2.1.3 and 7.1.x before 7.1.9.9 Update 1, a DLL hijacking issue exists in cachecleaner.dll in...
CVE-2021-21665HIGH8.8A cross-site request forgery (CSRF) vulnerability in Jenkins XebiaLabs XL Deploy Plugin 10.0.1 and earlier allows attack...
CVE-2021-3041HIGH7.8A local privilege escalation vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms that e...
CVE-2021-3040HIGH7.2An unsafe deserialization vulnerability in Bridgecrew Checkov by Prisma Cloud allows arbitrary code execution when proce...
CVE-2021-31998HIGH7.8A Incorrect Default Permissions vulnerability in the packaging of inn of SUSE Linux Enterprise Server 11-SP3; openSUSE B...
CVE-2021-31997HIGH7.8A UNIX Symbolic Link (Symlink) Following vulnerability in python-postorius of openSUSE Leap 15.2, Factory allows local a...
CVE-2021-25322HIGH7.8A UNIX Symbolic Link (Symlink) Following vulnerability in python-HyperKitty of openSUSE Leap 15.2, Factory allows local ...
CVE-2021-21736HIGH7.2A smart camera product of ZTE is impacted by a permission and access control vulnerability. Due to the defect of user pe...
CVE-2021-20081HIGH7.2Incomplete List of Disallowed Inputs in ManageEngine ServiceDesk Plus before version 11205 allows a remote, authenticate...
CVE-2021-34539HIGH7.2An issue was discovered in CubeCoders AMP before 2.1.1.8. A lack of validation of the Java Version setting means that an...
CVE-2021-26690HIGH7.5Apache HTTP Server versions 2.4.0 to 2.4.46 A specially crafted Cookie header handled by mod_session can cause a NULL po...
CVE-2021-33393HIGH8.8lfs/backup in IPFire 2.25-core155 does not ensure that /var/ipfire/backup/bin/backup.pl is owned by the root account. It...
CVE-2021-0133HIGH8.1Key exchange without entity authentication in the Intel(R) Security Library before version 3.3 may allow an authenticate...
CVE-2021-0112HIGH7.3Unquoted service path in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated user ...
CVE-2021-0108HIGH7.3Uncontrolled search path in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated us...
CVE-2021-0106HIGH7.8Incorrect default permissions in the Intel(R) Optane(TM) DC Persistent Memory for Windows software versions before 2.00....
CVE-2021-0104HIGH7.8Uncontrolled search path element in the installer for the Intel(R) Rapid Storage Technology software, before versions 17...
CVE-2021-0102HIGH7.8Insecure inherited permissions in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authentica...
CVE-2021-0100HIGH7.8Incorrect default permissions in the installer for the Intel(R) SSD Data Center Tool, versions downloaded before 12/31/2...
CVE-2021-0098HIGH7.8Improper access control in the Intel Unite(R) Client for Windows before version 4.2.25031 may allow an authenticated use...
CVE-2021-0094HIGH7.8Improper link resolution before file access in Intel(R) DSA before version 20.11.50.9 may allow an authenticated user to...
CVE-2021-0090HIGH7.3Uncontrolled search path element in Intel(R) DSA before version 20.11.50.9 may allow an authenticated user to potentiall...
CVE-2021-0077HIGH7.8Insecure inherited permissions in the installer for the Intel(R) VTune(TM) Profiler before version 2021.1.1 may allow an...
CVE-2021-0074HIGH7.8Improper permissions in the installer for the Intel(R) Computing Improvement Program software before version 2.4.5982 ma...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now