2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-25143 | HIGH | 7.5 | 1.3% | Mar 29, 2021 | A remote denial of service (dos) vulnerability was discovered in some Aruba Instant Access Point (IAP) products in versi... |
| CVE-2021-21727 | HIGH | 7.5 | 1.4% | Mar 29, 2021 | A ZTE product has a DoS vulnerability. A remote attacker can amplify traffic by sending carefully constructed IPv6 packe... |
| CVE-2021-23358 | HIGH | 7.2 | 4.1% | Mar 29, 2021 | The package underscore from 1.13.0-0 and before 1.13.0-2, from 1.3.2 and before 1.12.1 are vulnerable to Arbitrary Code ... |
| CVE-2021-28937 | HIGH | 7.5 | 5.3% | Mar 29, 2021 | The /password.html page of the Web management interface of the Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) conta... |
| CVE-2021-28936 | HIGH | 7.5 | 2.6% | Mar 29, 2021 | The Acexy Wireless-N WiFi Repeater REV 1.0 (28.08.06.1) Web management administrator password can be changed by sending ... |
| CVE-2021-29249 | HIGH | 7.5 | 1.2% | Mar 26, 2021 | BTCPay Server before 1.0.6.0, when the payment button is used, has a privacy vulnerability. |
| CVE-2021-29266 | HIGH | 7.8 | 0.3% | Mar 26, 2021 | An issue was discovered in the Linux kernel before 5.11.9. drivers/vhost/vdpa.c has a use-after-free because v->config_c... |
| CVE-2021-21374 | HIGH | 8.1 | 1.0% | Mar 26, 2021 | Nimble is a package manager for the Nim programming language. In Nim release versions before versions 1.2.10 and 1.4.4, ... |
| CVE-2021-21372 | HIGH | 8.8 | 3.6% | Mar 26, 2021 | Nimble is a package manager for the Nim programming language. In Nim release version before versions 1.2.10 and 1.4.4, N... |
| CVE-2021-20206 | HIGH | 7.2 | 1.5% | Mar 26, 2021 | An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying ... |
| CVE-2021-21389 | HIGH | 8.8 | 13.9% | Mar 26, 2021 | BuddyPress is an open source WordPress plugin to build a community site. In releases of BuddyPress from 5.0.0 before 7.2... |
| CVE-2021-21332 | HIGH | 8.2 | 1.2% | Mar 26, 2021 | Synapse is a Matrix reference homeserver written in python (pypi package matrix-synapse). Matrix is an ecosystem for ope... |
| CVE-2021-29255 | HIGH | 7.5 | 0.6% | Mar 26, 2021 | MicroSeven MYM71080i-B 2.0.5 through 2.0.20 devices send admin credentials in cleartext to pnp.microseven.com TCP port 7... |
| CVE-2021-20271 | HIGH | 7 | 0.8% | Mar 26, 2021 | A flaw was found in RPM's signature check functionality when reading a package file. This flaw allows an attacker who ca... |
| CVE-2021-22506 | HIGH | 7.5 | 25.7% | Mar 26, 2021 | Advance configuration exposing Information Leakage vulnerability in Micro Focus Access Manager product, affects all vers... |
| CVE-2021-20682 | HIGH | 7.2 | 2.5% | Mar 26, 2021 | baserCMS versions prior to 4.4.5 allows a remote attacker with an administrative privilege to execute arbitrary OS comma... |
| CVE-2021-28250 | HIGH | 7.8 | 0.3% | Mar 26, 2021 | CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a setuid (and/or setgid) file. W... |
| CVE-2021-28249 | HIGH | 8.8 | 0.4% | Mar 26, 2021 | CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dynamically Linked Shared Obje... |
| CVE-2021-28248 | HIGH | 7.5 | 1.4% | Mar 26, 2021 | CA eHealth Performance Manager through 6.3.2.12 is affected by Improper Restriction of Excessive Authentication Attempts... |
| CVE-2021-28246 | HIGH | 7.8 | 0.4% | Mar 26, 2021 | CA eHealth Performance Manager through 6.3.2.12 is affected by Privilege Escalation via a Dynamically Linked Shared Obje... |
| CVE-2021-3119 | HIGH | 7.5 | 1.6% | Mar 25, 2021 | Zetetic SQLCipher 4.x before 4.4.3 has a NULL pointer dereferencing issue related to sqlcipher_export in crypto.c and sq... |
| CVE-2021-29098 | HIGH | 7.8 | 2.0% | Mar 25, 2021 | Multiple uninitialized pointer vulnerabilities when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ... |
| CVE-2021-29097 | HIGH | 7.8 | 2.4% | Mar 25, 2021 | Multiple buffer overflow vulnerabilities when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ArcGIS... |
| CVE-2021-27454 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | The software performs an operation at a privilege level higher than the minimum level required, which creates new weakne... |
| CVE-2021-27452 | HIGH | 7.8 | 0.3% | Mar 25, 2021 | The software contains a hard-coded password that could allow an attacker to take control of the merging unit using these... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now