2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-41366 | HIGH | 7.8 | 0.4% | Nov 10, 2021 | Credential Security Support Provider Protocol (CredSSP) Elevation of Privilege Vulnerability |
| CVE-2021-41356 | HIGH | 7.5 | 2.7% | Nov 10, 2021 | Windows Denial of Service Vulnerability |
| CVE-2021-41351 | MEDIUM | 4.3 | 3.6% | Nov 10, 2021 | Microsoft Edge (Chrome based) Spoofing on IE Mode |
| CVE-2021-41349 | MEDIUM | 6.5 | 93.9% | Nov 10, 2021 | Microsoft Exchange Server Spoofing Vulnerability |
| CVE-2021-40442 | HIGH | 7.8 | 2.1% | Nov 10, 2021 | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2021-38666 | HIGH | 8.8 | 12.9% | Nov 10, 2021 | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2021-38665 | HIGH | 7.4 | 6.2% | Nov 10, 2021 | Remote Desktop Protocol Client Information Disclosure Vulnerability |
| CVE-2021-38631 | MEDIUM | 4.4 | 1.6% | Nov 10, 2021 | Windows Remote Desktop Protocol (RDP) Information Disclosure Vulnerability |
| CVE-2021-36957 | HIGH | 7.8 | 0.4% | Nov 10, 2021 | Windows Desktop Bridge Elevation of Privilege Vulnerability |
| CVE-2021-26444 | LOW | 3.3 | 1.2% | Nov 10, 2021 | Azure RTOS Information Disclosure Vulnerability |
| CVE-2021-26443 | CRITICAL | 9 | 1.5% | Nov 10, 2021 | Microsoft Virtual Machine Bus (VMBus) Remote Code Execution Vulnerability |
| CVE-2021-37158 | HIGH | 8.8 | 2.3% | Nov 10, 2021 | An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. An authenticated attacker could inject OS c... |
| CVE-2021-37157 | HIGH | 8.8 | 1.3% | Nov 10, 2021 | An issue was discovered in OpenGamePanel OGP-Agent-Linux through 2021-08-14. $HOME/OGP/Cfg/Config.pm has the root passwo... |
| CVE-2021-43575 | MEDIUM | 5.5 | 0.3% | Nov 9, 2021 | KNX ETS6 through 6.0.0 uses the hard-coded password ETS5Password, with a salt value of Ivan Medvedev, allowing local use... |
| CVE-2021-35489 | MEDIUM | 6.1 | 0.8% | Nov 9, 2021 | Thruk 2.40-2 allows /thruk/#cgi-bin/extinfo.cgi?type=2&host={HOSTNAME]&service={SERVICENAME]&backend={BACKEND] Reflected... |
| CVE-2021-35488 | MEDIUM | 6.1 | 2.6% | Nov 9, 2021 | Thruk 2.40-2 allows /thruk/#cgi-bin/status.cgi?style=combined&title={TITLE] Reflected XSS via the host or title paramete... |
| CVE-2021-43572 | CRITICAL | 9.8 | 1.2% | Nov 9, 2021 | The verify function in the Stark Bank Python ECDSA library (aka starkbank-escada or ecdsa-python) before 2.0.1 fails to ... |
| CVE-2021-43571 | CRITICAL | 9.8 | 1.0% | Nov 9, 2021 | The verify function in the Stark Bank Node.js ECDSA library (ecdsa-node) 1.1.2 fails to check that the signature is non-... |
| CVE-2021-43570 | CRITICAL | 9.8 | 1.0% | Nov 9, 2021 | The verify function in the Stark Bank Java ECDSA library (ecdsa-java) 1.0.0 fails to check that the signature is non-zer... |
| CVE-2021-43569 | CRITICAL | 9.8 | 1.0% | Nov 9, 2021 | The verify function in the Stark Bank .NET ECDSA library (ecdsa-dotnet) 1.3.1 fails to check that the signature is non-z... |
| CVE-2021-43568 | CRITICAL | 9.8 | 1.0% | Nov 9, 2021 | The verify function in the Stark Bank Elixir ECDSA library (ecdsa-elixir) 1.0.0 fails to check that the signature is non... |
| CVE-2021-20119 | HIGH | 7.1 | 0.4% | Nov 9, 2021 | The password change utility for the Arris SurfBoard SB8200 can have safety measures bypassed that allow any logged-in us... |
| CVE-2021-43174 | HIGH | 7.5 | 1.2% | Nov 9, 2021 | NLnet Labs Routinator versions 0.9.0 up to and including 0.10.1, support the gzip transfer encoding when querying RRDP r... |
| CVE-2021-43173 | HIGH | 7.5 | 1.4% | Nov 9, 2021 | In NLnet Labs Routinator prior to 0.10.2, a validation run can be delayed significantly by an RRDP repository by not ans... |
| CVE-2021-43172 | HIGH | 7.5 | 1.2% | Nov 9, 2021 | NLnet Labs Routinator prior to 0.10.2 happily processes a chain of RRDP repositories of infinite length causing it to ne... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now