2021 CVE Vulnerabilities
23,448 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27450 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | SSH server configuration file does not implement some best practices. This could lead to a weakening of the SSH protocol... |
| CVE-2021-27448 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | A miscommunication in the file system allows adversaries with access to the MU320E to escalate privileges on the MU320E ... |
| CVE-2021-27438 | HIGH | 8.8 | 1.2% | Mar 25, 2021 | The software contains a hard-coded password it uses for its own inbound authentication or for outbound communication to ... |
| CVE-2021-29096 | HIGH | 7.8 | 1.5% | Mar 25, 2021 | A use-after-free vulnerability when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ArcGIS Engine 10... |
| CVE-2021-27194 | HIGH | 8.8 | 0.4% | Mar 25, 2021 | Cleartext transmission of sensitive information in Netop Vision Pro up to and including 9.7.1 allows a remote unauthenti... |
| CVE-2021-27192 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Local privilege escalation vulnerability in Windows clients of Netop Vision Pro up to and including 9.7.1 allows a local... |
| CVE-2021-20217 | HIGH | 7.5 | 1.4% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead ... |
| CVE-2021-20216 | HIGH | 7.5 | 2.3% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly m... |
| CVE-2021-20215 | HIGH | 7.5 | 2.3% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocatio... |
| CVE-2021-20214 | HIGH | 7.5 | 2.0% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are ... |
| CVE-2021-20213 | HIGH | 7.5 | 1.6% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if acc... |
| CVE-2021-20212 | HIGH | 7.5 | 2.0% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is ... |
| CVE-2021-20211 | HIGH | 7.5 | 2.1% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash. |
| CVE-2021-20210 | HIGH | 7.5 | 2.4% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files a... |
| CVE-2021-25368 | HIGH | 7.5 | 0.6% | Mar 25, 2021 | Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is exe... |
| CVE-2021-25355 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action withou... |
| CVE-2021-25353 | HIGH | 7.1 | 0.2% | Mar 25, 2021 | Using empty PendingIntent in Galaxy Themes prior to version 5.2.00.1215 allows local attackers to read/write private fil... |
| CVE-2021-25352 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Using PendingIntent with implicit intent in Bixby Voice prior to version 3.0.52.14 allows attackers to execute privilege... |
| CVE-2021-25349 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Using unsafe PendingIntent in Slow Motion Editor prior to version 3.5.18.5 allows local attackers unauthorized action wi... |
| CVE-2021-22659 | HIGH | 8.6 | 1.7% | Mar 25, 2021 | Rockwell Automation MicroLogix 1400 Version 21.6 and below may allow a remote unauthenticated attacker to send a special... |
| CVE-2021-22496 | HIGH | 7.5 | 1.1% | Mar 25, 2021 | Authentication Bypass Vulnerability in Micro Focus Access Manager Product, affects all version prior to version 4.5.3.3.... |
| CVE-2021-3450 | HIGH | 7.4 | 18.3% | Mar 25, 2021 | The X509_V_FLAG_X509_STRICT flag enables additional security checks of the certificates present in a certificate chain. ... |
| CVE-2021-1492 | HIGH | 7.1 | 0.3% | Mar 25, 2021 | The Duo Authentication Proxy installer prior to 5.2.1 did not properly validate file installation paths. This allows an ... |
| CVE-2021-29156 | HIGH | 7.5 | 76.4% | Mar 25, 2021 | ForgeRock OpenAM before 13.5.1 allows LDAP injection via the Webfinger protocol. For example, an unauthenticated attacke... |
| CVE-2021-20679 | HIGH | 7.5 | 1.5% | Mar 25, 2021 | Fuji Xerox multifunction devices and printers (DocuCentre-VII C7773/C6673/C5573/C4473/C3373/C3372/C2273, DocuCentre-VII ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now