2021 CVE Vulnerabilities
23,452 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1153 | MEDIUM | 4.8 | 0.6% | Jan 13, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
| CVE-2021-1152 | MEDIUM | 4.8 | 0.6% | Jan 13, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
| CVE-2021-1151 | MEDIUM | 4.8 | 0.7% | Jan 13, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W... |
| CVE-2021-1145 | MEDIUM | 6.5 | 1.3% | Jan 13, 2021 | A vulnerability in the Secure FTP (SFTP) of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an authenticated,... |
| CVE-2021-1143 | MEDIUM | 4.3 | 0.7% | Jan 13, 2021 | A vulnerability in Cisco Connected Mobile Experiences (CMX) API authorizations could allow an authenticated, remote atta... |
| CVE-2021-1131 | MEDIUM | 4.3 | 0.5% | Jan 13, 2021 | A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could... |
| CVE-2021-1130 | MEDIUM | 4.8 | 0.8% | Jan 13, 2021 | A vulnerability in the web-based management interface of Cisco DNA Center software could allow an authenticated, remote ... |
| CVE-2021-1127 | MEDIUM | 5.4 | 0.6% | Jan 13, 2021 | A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allo... |
| CVE-2021-1126 | MEDIUM | 5.5 | 0.3% | Jan 13, 2021 | A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an aut... |
| CVE-2021-3032 | MEDIUM | 4.4 | 0.2% | Jan 13, 2021 | An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where configuration ... |
| CVE-2021-3031 | MEDIUM | 4.3 | 0.5% | Jan 13, 2021 | Padding bytes in Ethernet packets on PA-200, PA-220, PA-500, PA-800, PA-2000 Series, PA-3000 Series, PA-3200 Series, PA-... |
| CVE-2021-21614 | MEDIUM | 5.5 | 0.3% | Jan 13, 2021 | Jenkins Bumblebee HP ALM Plugin 4.1.5 and earlier stores credentials unencrypted in its global configuration file on the... |
| CVE-2021-21613 | MEDIUM | 6.1 | 0.9% | Jan 13, 2021 | Jenkins TICS Plugin 2020.3.0.6 and earlier does not escape TICS service responses, resulting in a cross-site scripting (... |
| CVE-2021-21612 | MEDIUM | 5.5 | 0.3% | Jan 13, 2021 | Jenkins TraceTronic ECU-TEST Plugin 2.23.1 and earlier stores credentials unencrypted in its global configuration file o... |
| CVE-2021-21611 | MEDIUM | 5.4 | 1.0% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape display names and IDs of item types shown on the New ... |
| CVE-2021-21610 | MEDIUM | 6.1 | 1.2% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not implement any restrictions for the URL rendering a formatted... |
| CVE-2021-21609 | MEDIUM | 5.3 | 1.3% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not correctly match requested URLs to the list of always accessi... |
| CVE-2021-21608 | MEDIUM | 5.4 | 1.0% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape button labels in the Jenkins UI, resulting in a cross... |
| CVE-2021-21607 | MEDIUM | 6.5 | 1.4% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not limit sizes provided as query parameters to graph-rendering ... |
| CVE-2021-21606 | MEDIUM | 4.3 | 1.2% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier improperly validates the format of a provided fingerprint ID when che... |
| CVE-2021-21603 | MEDIUM | 5.4 | 1.0% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape notification bar response contents, resulting in a cr... |
| CVE-2021-21602 | MEDIUM | 6.5 | 2.2% | Jan 13, 2021 | Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows reading arbitrary files using the file browser for workspaces ... |
| CVE-2021-23936 | MEDIUM | 6.1 | 0.9% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via the subject of a task. |
| CVE-2021-23935 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via an appointment in which the location contains JavaScript code. |
| CVE-2021-23934 | MEDIUM | 6.1 | 1.1% | Jan 12, 2021 | OX App Suite through 7.10.4 allows XSS via a contact whose name contains JavaScript code. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now