2021 CVE Vulnerabilities

23,448 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-27450HIGH7.8SSH server configuration file does not implement some best practices. This could lead to a weakening of the SSH protocol...
CVE-2021-27448HIGH7.8A miscommunication in the file system allows adversaries with access to the MU320E to escalate privileges on the MU320E ...
CVE-2021-27438HIGH8.8The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to ...
CVE-2021-29096HIGH7.8A use-after-free vulnerability when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ArcGIS Engine 10...
CVE-2021-27194HIGH8.8Cleartext transmission of sensitive information in Netop Vision Pro up to and including 9.7.1 allows a remote unauthenti...
CVE-2021-27192HIGH7.8Local privilege escalation vulnerability in Windows clients of Netop Vision Pro up to and including 9.7.1 allows a local...
CVE-2021-20217HIGH7.5A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead ...
CVE-2021-20216HIGH7.5A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly m...
CVE-2021-20215HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocatio...
CVE-2021-20214HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are ...
CVE-2021-20213HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if acc...
CVE-2021-20212HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is ...
CVE-2021-20211HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash.
CVE-2021-20210HIGH7.5A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files a...
CVE-2021-25368HIGH7.5Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is exe...
CVE-2021-25355HIGH7.8Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action withou...
CVE-2021-25353HIGH7.1Using empty PendingIntent in Galaxy Themes prior to version 5.2.00.1215 allows local attackers to read/write private fil...
CVE-2021-25352HIGH7.8Using PendingIntent with implicit intent in Bixby Voice prior to version 3.0.52.14 allows attackers to execute privilege...
CVE-2021-25349HIGH7.8Using unsafe PendingIntent in Slow Motion Editor prior to version 3.5.18.5 allows local attackers unauthorized action wi...
CVE-2021-22659HIGH8.6Rockwell Automation MicroLogix 1400 Version 21.6 and below may allow a remote unauthenticated attacker to send a special...
CVE-2021-22496HIGH7.5Authentication Bypass Vulnerability in Micro Focus Access Manager Product, affects all version prior to version 4.5.3.3....
CVE-2021-3450HIGH7.4The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. ...
CVE-2021-1492HIGH7.1The Duo Authentication Proxy installer prior to 5.2.1 did not properly validate file installation paths. This allows an ...
CVE-2021-29156HIGH7.5ForgeRock OpenAM before 13.5.1 allows LDAP injection via the Webfinger protocol. For example, an unauthenticated attacke...
CVE-2021-20679HIGH7.5Fuji Xerox multifunction devices and printers (DocuCentre-VII C7773/C6673/C5573/C4473/C3373/C3372/C2273, DocuCentre-VII ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now