2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-47871HIGH8.8Hestia Control Panel 1.3.2 contains an arbitrary file write vulnerability that allows authenticated attackers to write f...
CVE-2021-47869HIGH8.5Brother BRAdmin Professional 3.75 contains an unquoted service path vulnerability in the BRA_Scheduler service that allo...
CVE-2021-47868HIGH8.5WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the WPCommandFileService that allows local users to ...
CVE-2021-47867HIGH8.5WIN-PACK PRO4.8 contains an unquoted service path vulnerability in the ScheduleService that allows local users to potent...
CVE-2021-47866HIGH8.5WIN-PACK PRO 4.8 contains an unquoted service path vulnerability in the GuardTourService that allows local users to pote...
CVE-2021-47865HIGH8.7ProFTPD 1.3.7a contains a denial of service vulnerability that allows attackers to overwhelm the server by creating mult...
CVE-2021-47864HIGH8.5OSAS Traverse Extension 11 contains an unquoted service path vulnerability in the TravExtensionHostSvc service running w...
CVE-2021-47863HIGH8.5MacPaw Encrypto 1.0.1 contains an unquoted service path vulnerability in its Encrypto Service configuration that allows ...
CVE-2021-47862HIGH8.5Hi-Rez Studios 5.1.6.3 contains an unquoted service path vulnerability in the HiPatchService that allows local attackers...
CVE-2021-47861HIGH8.5Event Log Explorer 4.9.3 contains an unquoted service path vulnerability that allows local users to potentially execute ...
CVE-2021-47859HIGH8.5ActivIdentity 8.2 contains an unquoted service path vulnerability in the ac.sharedstore service that allows local attack...
CVE-2021-47858HIGH7.2Genexis Platinum-4410 P4410-V2-1.31A contains a stored cross-site scripting vulnerability in the 'start_addr' parameter ...
CVE-2021-47855HIGH7.2Openlitespeed 1.7.9 contains a stored cross-site scripting vulnerability in the dashboard's Notes parameter that allows ...
CVE-2021-47852HIGH8.8Rockstar Games Launcher 1.0.37.349 contains a privilege escalation vulnerability that allows authenticated users to modi...
CVE-2021-47850HIGH8.7Mini Mouse 9.2.0 contains a path traversal vulnerability that allows remote attackers to access arbitrary system files a...
CVE-2021-47849HIGH7.5Mini Mouse 9.3.0 contains a path traversal vulnerability that allows attackers to access sensitive system directories th...
CVE-2021-47848HIGH8.8Blitar Tourism 1.0 contains an authentication bypass vulnerability that allows attackers to bypass login by injecting SQ...
CVE-2021-47846HIGH8.8Digital Crime Report Management System 1.0 contains a critical SQL injection vulnerability affecting multiple login page...
CVE-2021-47802HIGH8.7Tenda D151 and D301 routers contain an unauthenticated configuration download vulnerability that allows remote attackers...
CVE-2021-47778HIGH7.2GetSimple CMS My SMTP Contact Plugin 1.1.2 contains a PHP code injection vulnerability. An authenticated administrator c...
CVE-2021-47770HIGH8.8OpenPLC v3 contains an authenticated remote code execution vulnerability that allows attackers with valid credentials to...
CVE-2021-47746HIGH8.6NodeBB Plugin Emoji 3.2.1 contains an arbitrary file write vulnerability that allows administrative users to write files...
CVE-2021-47847HIGH8.5Disk Sorter Server 13.6.12 contains an unquoted service path vulnerability in its binary path configuration that allows ...
CVE-2021-47845HIGH8.5Spy Emergency 25.0.650 contains an unquoted service path vulnerability in its Windows service configurations that allows...
CVE-2021-47842HIGH7.2StudyMD 0.3.2 contains a persistent cross-site scripting vulnerability that allows attackers to inject malicious scripts...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now