2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-27173HIGH7.5An issue was discovered on FiberHome HG6245D devices through RP2613. There is a telnet?enable=0&key=calculated(BR0_MAC) ...
CVE-2021-27142HIGH7.5An issue was discovered on FiberHome HG6245D devices through RP2613. The web management is done over HTTPS, using a hard...
CVE-2021-27140HIGH7.5An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to find passwords and authentication...
CVE-2021-27139HIGH7.5An issue was discovered on FiberHome HG6245D devices through RP2613. It is possible to extract information from the devi...
CVE-2021-26939HIGH7.5An information disclosure issue exists in henriquedornas 5.2.17 because an attacker can dump phpMyAdmin SQL content. NOT...
CVE-2021-26936HIGH7.8The replay-sorcery program in ReplaySorcery 0.4.0 through 0.5.0, when using the default setuid-root configuration, allow...
CVE-2021-20353HIGH8.2IBM WebSphere Application Server 7.0, 8.0, 8.5, and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack w...
CVE-2021-0341HIGH7.5In verifyHostName of OkHostnameVerifier.java, there is a possible way to accept a certificate for the wrong domain due t...
CVE-2021-0340HIGH8.8In parseNextBox of IsoInterface.java, there is a possible leak of unredacted location information due to improper input ...
CVE-2021-0339HIGH7.8In loadAnimation of WindowContainer.java, there is a possible way to keep displaying a malicious app while a target app ...
CVE-2021-0337HIGH7.8In moveInMediaStore of FileSystemProvider.java, there is a possible file exposure due to stale metadata. This could lead...
CVE-2021-0336HIGH7.8In onReceive of BluetoothPermissionRequest.java, there is a possible permissions bypass due to a mutable PendingIntent. ...
CVE-2021-0334HIGH7.8In onTargetSelected of ResolverActivity.java, there is a possible settings bypass allowing an app to become the default ...
CVE-2021-0333HIGH7.3In onCreate of BluetoothPermissionActivity.java, there is a possible permissions bypass due to a tapjacking overlay that...
CVE-2021-0332HIGH7.8In bootFinished of SurfaceFlinger.cpp, there is a possible memory corruption due to a use after free. This could lead to...
CVE-2021-0331HIGH7.3In onCreate of NotificationAccessConfirmationActivity.java, there is a possible overlay attack due to an insecure defaul...
CVE-2021-0330HIGH7.8In add_user_ce and remove_user_ce of storaged.cpp, there is a possible use-after-free due to improper locking. This coul...
CVE-2021-0329HIGH7.8In several native functions called by AdvertiseManager.java, there is a possible out of bounds write due to a missing bo...
CVE-2021-0328HIGH7.8In onBatchScanReports and deliverBatchScan of GattService.java, there is a possible way to retrieve Bluetooth scan resul...
CVE-2021-0327HIGH7.8In getContentProviderImpl of ActivityManagerService.java, there is a possible permission bypass due to non-restored bind...
CVE-2021-0326HIGH7.5In p2p_copy_client_info of p2p.c, there is a possible out of bounds write due to a missing bounds check. This could lead...
CVE-2021-0325HIGH8.8In ih264d_parse_pslice of ih264d_parse_pslice.c, there is a possible out of bounds write due to a heap buffer overflow. ...
CVE-2021-0314HIGH7.3In onCreate of UninstallerActivity, there is a possible way to uninstall an all without informed user consent due to a t...
CVE-2021-0305HIGH7.8In PackageInstaller, there is a possible tapjacking attack due to an insecure default value. This could lead to local es...
CVE-2021-0302HIGH7.8In PackageInstaller, there is a possible tapjacking attack due to an insecure default value. This could lead to local es...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now