2021 CVE Vulnerabilities

23,451 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-43611HIGH7.5Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via " \ " in the display name of a From heade...
CVE-2021-43610HIGH7.5Belledonne Belle-sip before 5.0.20 can crash applications such as Linphone via an invalid From header (request URI witho...
CVE-2021-3843MEDIUM6.7A potential vulnerability in the SMI function to access EEPROM in some ThinkPad models may allow an attacker with local ...
CVE-2021-3840HIGH8.8A dependency confusion vulnerability was reported in the Antilles open-source software prior to version 1.0.1 that could...
CVE-2021-3793MEDIUM5.3An improper access control vulnerability was reported in some Motorola-branded Binatone Hubble Cameras which could allow...
CVE-2021-3792MEDIUM5.3Some device communications in some Motorola-branded Binatone Hubble Cameras with backend Hubble services are not encrypt...
CVE-2021-3791MEDIUM6.5An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow a...
CVE-2021-3790MEDIUM6.5A buffer overflow was reported in the local web server of some Motorola-branded Binatone Hubble Cameras that could allow...
CVE-2021-3789MEDIUM4.6An information disclosure vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow a...
CVE-2021-3788MEDIUM6.8An exposed debug interface was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker wi...
CVE-2021-3787HIGH7.8A vulnerability was reported in some Motorola-branded Binatone Hubble Cameras that could allow an attacker with local ac...
CVE-2021-3786MEDIUM5.5A potential vulnerability in the SMI callback function used in CSME configuration of some Lenovo Notebook and ThinkPad s...
CVE-2021-3723HIGH8.8A command injection vulnerability was reported in the Integrated Management Module (IMM) of legacy IBM System x 3550 M3 ...
CVE-2021-3720MEDIUM5.5An information disclosure vulnerability was reported in the Time Weather system widget on Legion Phone Pro (L79031) and ...
CVE-2021-3719MEDIUM6.7A potential vulnerability in the SMI callback function that saves and restore boot script tables used for resuming from ...
CVE-2021-3718MEDIUM4.6A denial of service vulnerability was reported in some ThinkPad models that could cause a system to crash when the Enhan...
CVE-2021-3599MEDIUM6.7A potential vulnerability in the SMI callback function used to access flash device in some ThinkPad models may allow an ...
CVE-2021-3577HIGH8.8An unauthenticated remote code execution vulnerability was reported in some Motorola-branded Binatone Hubble Cameras tha...
CVE-2021-3519MEDIUM6.8A vulnerability was reported in some Lenovo Desktop models that could allow unauthorized access to the boot menu, when t...
CVE-2021-43332MEDIUM6.5In GNU Mailman before 2.1.36, the CSRF token for the Cgi/admindb.py admindb page contains an encrypted version of the li...
CVE-2021-43331MEDIUM6.1In GNU Mailman before 2.1.36, a crafted URL to the Cgi/options.py user options page can execute arbitrary JavaScript for...
CVE-2021-42563HIGH7.8There is an Unquoted Service Path in NI Service Locator (nisvcloc.exe) in versions prior to 18.0 on Windows. This may al...
CVE-2021-39303CRITICAL9.8The server in Jamf Pro before 10.32.0 has an SSRF vulnerability, aka PI-006352. NOTE: Jamf Nation will also publish an a...
CVE-2021-41972MEDIUM6.5Apache Superset up to and including 1.3.1 allowed for database connections password leak for authenticated users. This i...
CVE-2021-41264CRITICAL9.8OpenZeppelin Contracts is a library for smart contract development. In affected versions upgradeable contracts using `UU...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now