2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37044 | HIGH | 7.5 | 0.6% | Dec 8, 2021 | There is a Permission control vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affec... |
| CVE-2021-37040 | CRITICAL | 9.8 | 0.8% | Dec 8, 2021 | There is a Parameter injection vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus... |
| CVE-2021-37039 | MEDIUM | 6.5 | 0.3% | Dec 8, 2021 | There is an Input verification vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus... |
| CVE-2021-37037 | HIGH | 7.5 | 0.7% | Dec 8, 2021 | There is an Invalid address access vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may ... |
| CVE-2021-25527 | LOW | 3.3 | 0.2% | Dec 8, 2021 | Improper export of Android application components vulnerability in Samsung Pay (India only) prior to version 4.1.77 allo... |
| CVE-2021-25526 | MEDIUM | 5.5 | 0.2% | Dec 8, 2021 | Intent redirection vulnerability in Samsung Blockchain Wallet prior to version 1.3.02.8 allows attacker to execute privi... |
| CVE-2021-25525 | MEDIUM | 6.5 | 0.3% | Dec 8, 2021 | Improper check or handling of exception conditions vulnerability in Samsung Pay (US only) prior to version 4.0.65 allows... |
| CVE-2021-25524 | LOW | 3.3 | 0.2% | Dec 8, 2021 | Insecure storage of device information in Contacts prior to version 12.7.05.24 allows attacker to get Samsung Account ID... |
| CVE-2021-25523 | LOW | 3.3 | 0.2% | Dec 8, 2021 | Insecure storage of device information in Samsung Dialer prior to version 12.7.05.24 allows attacker to get Samsung Acco... |
| CVE-2021-25522 | LOW | 3.3 | 0.2% | Dec 8, 2021 | Insecure storage of sensitive information vulnerability in Smart Capture prior to version 4.8.02.10 allows attacker to a... |
| CVE-2021-25521 | LOW | 3.3 | 0.2% | Dec 8, 2021 | Insecure caller check in sharevia deeplink logic prior to Samsung Internet 16.0.2 allows unstrusted applications to get ... |
| CVE-2021-25520 | MEDIUM | 6.1 | 0.4% | Dec 8, 2021 | Insecure caller check and input validation vulnerabilities in SearchKeyword deeplink logic prior to Samsung Internet 16.... |
| CVE-2021-25519 | LOW | 3.3 | 0.1% | Dec 8, 2021 | An improper access control vulnerability in CPLC prior to SMR Dec-2021 Release 1 allows local attackers to access CPLC i... |
| CVE-2021-25518 | MEDIUM | 6.7 | 0.1% | Dec 8, 2021 | An improper boundary check in secure_log of LDFW and BL31 prior to SMR Dec-2021 Release 1 allows arbitrary memory write ... |
| CVE-2021-25517 | HIGH | 7.8 | 0.1% | Dec 8, 2021 | An improper input validation vulnerability in LDFW prior to SMR Dec-2021 Release 1 allows attackers to perform arbitrary... |
| CVE-2021-25516 | HIGH | 7.5 | 0.3% | Dec 8, 2021 | An improper check or handling of exceptional conditions in Exynos baseband prior to SMR Dec-2021 Release 1 allows attack... |
| CVE-2021-25515 | LOW | 3.3 | 0.1% | Dec 8, 2021 | An improper usage of implicit intent in SemRewardManager prior to SMR Dec-2021 Release 1 allows attackers to access BSSI... |
| CVE-2021-25514 | MEDIUM | 6.5 | 0.2% | Dec 8, 2021 | An improper intent redirection handling in Tags prior to SMR Dec-2021 Release 1 allows attackers to access sensitive inf... |
| CVE-2021-25513 | LOW | 2.4 | 0.1% | Dec 8, 2021 | An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Release 1 allows unauthori... |
| CVE-2021-25512 | HIGH | 7.8 | 0.1% | Dec 8, 2021 | An improper validation vulnerability in telephony prior to SMR Dec-2021 Release 1 allows attackers to launch certain act... |
| CVE-2021-25511 | HIGH | 7.8 | 0.1% | Dec 8, 2021 | An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows attackers to write arbitra... |
| CVE-2021-25510 | HIGH | 7.8 | 0.1% | Dec 8, 2021 | An improper validation vulnerability in FilterProvider prior to SMR Dec-2021 Release 1 allows local arbitrary code execu... |
| CVE-2021-43063 | MEDIUM | 6.1 | 0.9% | Dec 8, 2021 | A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiWeb version 6.4.... |
| CVE-2021-36190 | MEDIUM | 6.3 | 0.8% | Dec 8, 2021 | A unintended proxy or intermediary ('confused deputy') in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below al... |
| CVE-2021-43064 | MEDIUM | 6.1 | 0.6% | Dec 8, 2021 | A url redirection to untrusted site ('open redirect') in Fortinet FortiWeb version 6.4.1 and 6.4.0, version 6.3.15 and b... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now