2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-27623MEDIUM5.9SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr...
CVE-2021-27622MEDIUM5.9SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr...
CVE-2021-27621MEDIUM4.9Information Disclosure vulnerability in UserAdmin application in SAP NetWeaver Application Server for Java, versions - 7...
CVE-2021-27620MEDIUM5.9SAP Internet Graphics Service, versions - 7.20,7.20EXT,7.53,7.20_EX2,7.81, allows an unauthenticated attacker after retr...
CVE-2021-27615MEDIUM5.4SAP Manufacturing Execution versions - 15.1, 1.5.2, 15.3, 15.4, does not contain some HTTP security headers in their HTT...
CVE-2021-21490MEDIUM6.1SAP NetWeaver AS for ABAP (Web Survey), versions - 700, 702, 710, 711, 730, 731, 750, 750, 752, 75A, 75F, does not suffi...
CVE-2021-21473MEDIUM6.3SAP NetWeaver AS ABAP and ABAP Platform, versions - 700, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, con...
CVE-2021-34370MEDIUM6.1Accela Civic Platform through 20.1 allows ssoAdapter/logoutAction.do successURL XSS. NOTE: the vendor states "there are ...
CVE-2021-34369MEDIUM6.5portlets/contact/ref/refContactDetail.do in Accela Civic Platform through 20.1 allows remote attackers to obtain sensiti...
CVE-2021-33829MEDIUM6.1A cross-site scripting (XSS) vulnerability in the HTML Data Processor in CKEditor 4 4.14.0 through 4.16.x before 4.16.1 ...
CVE-2021-26314MEDIUM5.5Potential floating point value injection in all supported CPU products, in conjunction with software vulnerabilities rel...
CVE-2021-26313MEDIUM5.5Potential speculative code store bypass in all supported CPU products, in conjunction with software vulnerabilities rela...
CVE-2021-34364MEDIUM6.1The Refined GitHub browser extension before 21.6.8 might allow XSS via a link in a document. NOTE: github.com sends Cont...
CVE-2021-28169MEDIUM5.3For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doub...
CVE-2021-20732MEDIUM5.9The ATOM (ATOM - Smart life App for Android versions prior to 1.8.1 and ATOM - Smart life App for iOS versions prior to ...
CVE-2021-20730MEDIUM4.3Improper access control vulnerability in WSR-1166DHP3 firmware Ver.1.16 and prior and WSR-1166DHP4 firmware Ver.1.02 and...
CVE-2021-20728MEDIUM5.3Improper access control vulnerability in goo blog App for Android ver.1.2.25 and earlier and for iOS ver.1.3.3 and earli...
CVE-2021-31978MEDIUM5.5Microsoft Defender Denial of Service Vulnerability
CVE-2021-31972MEDIUM5.5Event Tracing for Windows Information Disclosure Vulnerability
CVE-2021-31971MEDIUM6.8Windows HTML Platforms Security Feature Bypass Vulnerability
CVE-2021-31970MEDIUM5.5Windows TCP/IP Driver Security Feature Bypass Vulnerability
CVE-2021-31965MEDIUM5.7Microsoft SharePoint Server Information Disclosure Vulnerability
CVE-2021-31960MEDIUM5.5Windows Bind Filter Driver Information Disclosure Vulnerability
CVE-2021-31959MEDIUM6.4Scripting Engine Memory Corruption Vulnerability
CVE-2021-31957MEDIUM5.9ASP.NET Core Denial of Service Vulnerability

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now