2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-1153MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W...
CVE-2021-1152MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W...
CVE-2021-1151MEDIUM4.8Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W...
CVE-2021-1145MEDIUM6.5A vulnerability in the Secure FTP (SFTP) of Cisco StarOS for Cisco ASR 5000 Series Routers could allow an authenticated,...
CVE-2021-1143MEDIUM4.3A vulnerability in Cisco Connected Mobile Experiences (CMX) API authorizations could allow an authenticated, remote atta...
CVE-2021-1131MEDIUM4.3A vulnerability in the Cisco Discovery Protocol implementation for Cisco Video Surveillance 8000 Series IP Cameras could...
CVE-2021-1130MEDIUM4.8A vulnerability in the web-based management interface of Cisco DNA Center software could allow an authenticated, remote ...
CVE-2021-1127MEDIUM5.4A vulnerability in the web-based management interface of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allo...
CVE-2021-1126MEDIUM5.5A vulnerability in the storage of proxy server credentials of Cisco Firepower Management Center (FMC) could allow an aut...
CVE-2021-3032MEDIUM4.4An information exposure through log file vulnerability exists in Palo Alto Networks PAN-OS software where configuration ...
CVE-2021-3031MEDIUM4.3Padding bytes in Ethernet packets on PA-200, PA-220, PA-500, PA-800, PA-2000 Series, PA-3000 Series, PA-3200 Series, PA-...
CVE-2021-21614MEDIUM5.5Jenkins Bumblebee HP ALM Plugin 4.1.5 and earlier stores credentials unencrypted in its global configuration file on the...
CVE-2021-21613MEDIUM6.1Jenkins TICS Plugin 2020.3.0.6 and earlier does not escape TICS service responses, resulting in a cross-site scripting (...
CVE-2021-21612MEDIUM5.5Jenkins TraceTronic ECU-TEST Plugin 2.23.1 and earlier stores credentials unencrypted in its global configuration file o...
CVE-2021-21611MEDIUM5.4Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape display names and IDs of item types shown on the New ...
CVE-2021-21610MEDIUM6.1Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not implement any restrictions for the URL rendering a formatted...
CVE-2021-21609MEDIUM5.3Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not correctly match requested URLs to the list of always accessi...
CVE-2021-21608MEDIUM5.4Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape button labels in the Jenkins UI, resulting in a cross...
CVE-2021-21607MEDIUM6.5Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not limit sizes provided as query parameters to graph-rendering ...
CVE-2021-21606MEDIUM4.3Jenkins 2.274 and earlier, LTS 2.263.1 and earlier improperly validates the format of a provided fingerprint ID when che...
CVE-2021-21603MEDIUM5.4Jenkins 2.274 and earlier, LTS 2.263.1 and earlier does not escape notification bar response contents, resulting in a cr...
CVE-2021-21602MEDIUM6.5Jenkins 2.274 and earlier, LTS 2.263.1 and earlier allows reading arbitrary files using the file browser for workspaces ...
CVE-2021-23936MEDIUM6.1OX App Suite through 7.10.4 allows XSS via the subject of a task.
CVE-2021-23935MEDIUM6.1OX App Suite through 7.10.4 allows XSS via an appointment in which the location contains JavaScript code.
CVE-2021-23934MEDIUM6.1OX App Suite through 7.10.4 allows XSS via a contact whose name contains JavaScript code.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now