2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-38975MEDIUM6.5IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 could allow an authenticated user to to obtain sensitive infor...
CVE-2021-38974MEDIUM6.5IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 could allow an authenticated user to cause a denial of service...
CVE-2021-34992HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on affected installations of Orckestra C1 CMS 6.10....
CVE-2021-34991HIGH8.8This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR R640...
CVE-2021-43574MEDIUM6.1WebAdmin Control Panel in Atmail 6.5.0 (a version released in 2012) allows XSS via the format parameter to the default U...
CVE-2021-42703MEDIUM6.1This vulnerability could allow an attacker to send malicious Javascript code resulting in hijacking of the user’s cookie...
CVE-2021-22959MEDIUM6.5The parser in accepts requests with a space (SP) right after the header name before the colon. This can lead to HTTP Req...
CVE-2021-42706HIGH7.8This vulnerability could allow an attacker to disclose information and execute arbitrary code on affected installations ...
CVE-2021-43495HIGH7.5AlquistManager branch as of commit 280d99f43b11378212652e75f6f3159cde9c1d36 is affected by a directory traversal vulnera...
CVE-2021-42839HIGH8.8Grand Vice info Co. webopac7 file upload function fails to filter special characters. While logging in with general user...
CVE-2021-42838MEDIUM6.1Grand Vice info Co. webopac7 book search field parameter does not properly restrict the input of special characters, thu...
CVE-2021-41289MEDIUM6.3ASUS P453UJ contains the Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability. With a g...
CVE-2021-43620HIGH7.5An issue was discovered in the fruity crate through 0.2.0 for Rust. Security-relevant validation of filename extensions ...
CVE-2021-43618HIGH7.5GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer...
CVE-2021-43391HIGH7.8An Out-of-Bounds Read vulnerability exists when reading a DXF file using Open Design Alliance Drawings SDK before 2022.1...
CVE-2021-43390HIGH7.8An Out-of-Bounds Write vulnerability exists when reading a DGN file using Open Design Alliance Drawings SDK before 2022....
CVE-2021-43336HIGH7.8An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK befor...
CVE-2021-43280HIGH7.8A stack-based buffer overflow vulnerability exists in the DWF file reading procedure in Open Design Alliance Drawings SD...
CVE-2021-43279HIGH7.8An out-of-bounds write vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 202...
CVE-2021-43278HIGH7.8An Out-of-bounds Read vulnerability exists in the OBJ file reading procedure in Open Design Alliance Drawings SDK before...
CVE-2021-43277HIGH7.8An out-of-bounds read vulnerability exists in the U3D file reading procedure in Open Design Alliance PRC SDK before 2022...
CVE-2021-43276HIGH7.8An Out-of-bounds Read vulnerability exists in Open Design Alliance ODA Viewer before 2022.8. Crafted data in a DWF file ...
CVE-2021-43275HIGH7.8A Use After Free vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before 2022...
CVE-2021-43274HIGH7.8A Use After Free Vulnerability exists in the Open Design Alliance Drawings SDK before 2022.11. The specific flaw exists ...
CVE-2021-43273LOW3.3An Out-of-bounds Read vulnerability exists in the DGN file reading procedure in Open Design Alliance Drawings SDK before...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now