2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-43611 | HIGH | 7.5 | 1.2% | Nov 12, 2021 | Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via " \ " in the display name of a From heade... |
| CVE-2021-43610 | HIGH | 7.5 | 1.2% | Nov 12, 2021 | Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via an invalid From header (request URI witho... |
| CVE-2021-3843 | MEDIUM | 6.7 | 0.3% | Nov 12, 2021 | A potential vulnerability in the SMI function to access EEPROM in some ThinkPad models may allow an attacker with local ... |
| CVE-2021-3840 | HIGH | 8.8 | 2.0% | Nov 12, 2021 | A dependency confusion vulnerability was reported in the Antilles open-source software prior to version 1.0.1 that could... |
| CVE-2021-3793 | MEDIUM | 5.3 | 0.7% | Nov 12, 2021 | An improper access control vulnerability was reported in some Motorola-branded Binatone Hubble Cameras which could allow... |
| CVE-2021-3792 | MEDIUM | 5.3 | 0.5% | Nov 12, 2021 | Some device communications in some Motorola-branded Binatone Hubble Cameras with backend Hubble services are not encrypt... |
| CVE-2021-3791 | MEDIUM | 6.5 | 0.4% | Nov 12, 2021 | An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow a... |
| CVE-2021-3790 | MEDIUM | 6.5 | 0.4% | Nov 12, 2021 | A buffer overflow was reported in the local web server of some Motorola-branded Binatone Hubble Cameras that could allow... |
| CVE-2021-3789 | MEDIUM | 4.6 | 0.1% | Nov 12, 2021 | An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow a... |
| CVE-2021-3788 | MEDIUM | 6.8 | 0.2% | Nov 12, 2021 | An exposed debug interface was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker wi... |
| CVE-2021-3787 | HIGH | 7.8 | 0.2% | Nov 12, 2021 | A vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with local ac... |
| CVE-2021-3786 | MEDIUM | 5.5 | 0.2% | Nov 12, 2021 | A potential vulnerability in the SMI callback function used in CSME configuration of some Lenovo Notebook and ThinkPad s... |
| CVE-2021-3723 | HIGH | 8.8 | 1.9% | Nov 12, 2021 | A command injection vulnerability was reported in the Integrated Management Module (IMM) of legacy IBM System x 3550 M3 ... |
| CVE-2021-3720 | MEDIUM | 5.5 | 0.2% | Nov 12, 2021 | An information disclosure vulnerability was reported in the Time Weather system widget on Legion Phone Pro (L79031) and ... |
| CVE-2021-3719 | MEDIUM | 6.7 | 0.2% | Nov 12, 2021 | A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from ... |
| CVE-2021-3718 | MEDIUM | 4.6 | 0.2% | Nov 12, 2021 | A denial of service vulnerability was reported in some ThinkPad models that could cause a system to crash when the Enhan... |
| CVE-2021-3599 | MEDIUM | 6.7 | 0.3% | Nov 12, 2021 | A potential vulnerability in the SMI callback function used to access flash device in some ThinkPad models may allow an ... |
| CVE-2021-3577 | HIGH | 8.8 | 59.9% | Nov 12, 2021 | An unauthenticated remote code execution vulnerability was reported in some Motorola-branded Binatone Hubble Cameras tha... |
| CVE-2021-3519 | MEDIUM | 6.8 | 0.2% | Nov 12, 2021 | A vulnerability was reported in some Lenovo Desktop models that could allow unauthorized access to the boot menu, when t... |
| CVE-2021-43332 | MEDIUM | 6.5 | 1.1% | Nov 12, 2021 | In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py admindb page contains an encrypted version of the li... |
| CVE-2021-43331 | MEDIUM | 6.1 | 1.3% | Nov 12, 2021 | In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user options page can execute arbitrary JavaScript for... |
| CVE-2021-42563 | HIGH | 7.8 | 0.2% | Nov 12, 2021 | There is an Unquoted Service Path in NI Service Locator (nisvcloc.exe) in versions prior to 18.0 on Windows. This may al... |
| CVE-2021-39303 | CRITICAL | 9.8 | 1.7% | Nov 12, 2021 | The server in Jamf Pro before 10.32.0 has an SSRF vulnerability, aka PI-006352. NOTE: Jamf Nation will also publish an a... |
| CVE-2021-41972 | MEDIUM | 6.5 | 1.4% | Nov 12, 2021 | Apache Superset up to and including 1.3.1 allowed for database connections password leak for authenticated users. This i... |
| CVE-2021-41264 | CRITICAL | 9.8 | 1.4% | Nov 12, 2021 | OpenZeppelin Contracts is a library for smart contract development. In affected versions upgradeable contracts using `UU... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now