2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-23233 | CRITICAL | 9.8 | 0.9% | Jan 21, 2022 | Sensitive endpoints in Fresenius Kabi Agilia Link+ v3.0 and prior can be accessed without any authentication information... |
| CVE-2021-23196 | CRITICAL | 9.8 | 0.9% | Jan 21, 2022 | The web application on Agilia Link+ version 3.0 implements authentication and session management mechanisms exclusively ... |
| CVE-2021-46309 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourcecodester Employee and Visitor Gate Pass Logging System 1.0 via the userna... |
| CVE-2021-46308 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourcecodester Online Railway Reservation Sysytem 1.0 via the sid parameter. |
| CVE-2021-46307 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | An SQL Injection vulnerability exists in Projectworlds Online Examination System 1.0 via the eid parameter in account.ph... |
| CVE-2021-46201 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourcecodester Online Resort Management System 1.0 via the id parameterv in /or... |
| CVE-2021-46200 | CRITICAL | 9.8 | 1.6% | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourcecodester Simple Music Clour Community System 1.0 via the email parameter ... |
| CVE-2021-46198 | CRITICAL | 9.8 | 1.8% | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/aja... |
| CVE-2021-40855 | CRITICAL | 9.8 | 0.7% | Jan 21, 2022 | The EU Technical Specifications for Digital COVID Certificates before 1.1 mishandle certificate governance. A non-produc... |
| CVE-2021-35004 | CRITICAL | 9.8 | 7.7% | Jan 21, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link TL-WA1201 1.0.... |
| CVE-2021-35003 | CRITICAL | 9.8 | 7.7% | Jan 21, 2022 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-Link Archer C90 1.0... |
| CVE-2021-46061 | CRITICAL | 9.8 | 1.6% | Jan 20, 2022 | An SQL Injection vulnerability exists in Sourcecodester Computer and Mobile Repair Shop Management system (RSMS) 1.0 via... |
| CVE-2021-44245 | CRITICAL | 9.8 | 1.4% | Jan 20, 2022 | An SQL Injection vulnerability exists in Courcecodester COVID 19 Testing Management System (CTMS) 1.0 via the (1) userna... |
| CVE-2021-44244 | CRITICAL | 9.8 | 1.3% | Jan 20, 2022 | An SQL Injection vulnerabiity exists in Sourcecodester Logistic Hub Parcel's Management System 1.0 via the username para... |
| CVE-2021-44092 | CRITICAL | 9.8 | 1.3% | Jan 20, 2022 | An SQL Injection vulnerability exists in code-projects Pharmacy Management 1.0 via the username parameter in the adminis... |
| CVE-2021-44090 | CRITICAL | 9.8 | 1.1% | Jan 20, 2022 | An SQL Injection vulnerability exists in Sourcecodester Online Reviewer System 1.0 via the password parameter. |
| CVE-2021-44736 | CRITICAL | 9.8 | 2.4% | Jan 20, 2022 | The initial admin account setup wizard on Lexmark devices allow unauthenticated access to the “out of service erase” fea... |
| CVE-2021-44735 | CRITICAL | 9.8 | 7.7% | Jan 20, 2022 | Embedded web server command injection vulnerability in Lexmark devices through 2021-12-07. |
| CVE-2021-44734 | CRITICAL | 9.8 | 6.4% | Jan 20, 2022 | Embedded web server input sanitization vulnerability in Lexmark devices through 2021-12-07, which can which can lead to ... |
| CVE-2021-44738 | CRITICAL | 9.8 | 3.3% | Jan 20, 2022 | Buffer overflow vulnerability has been identified in Lexmark devices through 2021-12-07 in postscript interpreter. |
| CVE-2021-46204 | CRITICAL | 9.8 | 1.1% | Jan 19, 2022 | Taocms v3.0.2 was discovered to contain an arbitrary file read vulnerability via the path parameter. SQL injection vulne... |
| CVE-2021-33913 | CRITICAL | 9.8 | 9.6% | Jan 19, 2022 | libspf2 before 1.2.11 has a heap-based buffer overflow that might allow remote attackers to execute arbitrary code (via ... |
| CVE-2021-33912 | CRITICAL | 9.8 | 9.6% | Jan 19, 2022 | libspf2 before 1.2.11 has a four-byte heap-based buffer overflow that might allow remote attackers to execute arbitrary ... |
| CVE-2021-35683 | CRITICAL | 9.9 | 1.2% | Jan 19, 2022 | Vulnerability in the Oracle Essbase Administration Services product of Oracle Essbase (component: EAS Console). The supp... |
| CVE-2021-35587 | CRITICAL | 9.8 | 96.3% | Jan 19, 2022 | Vulnerability in the Oracle Access Manager product of Oracle Fusion Middleware (component: OpenSSO Agent). Supported ver... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now