2021 CVE Vulnerabilities
23,451 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22404 | MEDIUM | 5.3 | 0.9% | Oct 28, 2021 | There is a Directory traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may affe... |
| CVE-2021-22403 | CRITICAL | 9.8 | 0.9% | Oct 28, 2021 | There is a vulnerability of hijacking unverified providers in Huawei Smartphone.Successful exploitation of this vulnerab... |
| CVE-2021-22402 | HIGH | 7.5 | 0.7% | Oct 28, 2021 | There is a DoS vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause DoS attacks. |
| CVE-2021-22401 | HIGH | 7.5 | 0.7% | Oct 28, 2021 | There is a Remote DoS vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability can affect servic... |
| CVE-2021-22278 | MEDIUM | 6.7 | 0.1% | Oct 28, 2021 | A certificate validation vulnerability in PCM600 Update Manager allows attacker to get unwanted software packages to be ... |
| CVE-2021-37915 | HIGH | 8.8 | 2.0% | Oct 28, 2021 | An issue was discovered on the Grandstream HT801 Analog Telephone Adaptor before 1.0.29.8. From the limited configuratio... |
| CVE-2021-37748 | HIGH | 8.8 | 7.3% | Oct 28, 2021 | Multiple buffer overflows in the limited configuration shell (/sbin/gs_config) on Grandstream HT801 devices before 1.0.2... |
| CVE-2021-43057 | HIGH | 7.8 | 0.5% | Oct 28, 2021 | An issue was discovered in the Linux kernel before 5.14.8. A use-after-free in selinux_ptrace_traceme (aka the SELinux h... |
| CVE-2021-43056 | MEDIUM | 5.5 | 0.3% | Oct 28, 2021 | An issue was discovered in the Linux kernel for powerpc before 5.14.15. It allows a malicious KVM guest to crash the hos... |
| CVE-2021-3906 | MEDIUM | 6.5 | 0.6% | Oct 27, 2021 | bookstack is vulnerable to Unrestricted Upload of File with Dangerous Type |
| CVE-2021-3904 | MEDIUM | 5.4 | 0.6% | Oct 27, 2021 | grav is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') |
| CVE-2021-41191 | HIGH | 7.5 | 1.3% | Oct 27, 2021 | Roblox-Purchasing-Hub is an open source Roblox product purchasing hub. A security risk in versions 1.0.1 and prior allow... |
| CVE-2021-3903 | HIGH | 7.8 | 0.6% | Oct 27, 2021 | vim is vulnerable to Heap-based Buffer Overflow |
| CVE-2021-3901 | HIGH | 8.8 | 0.5% | Oct 27, 2021 | firefly-iii is vulnerable to Cross-Site Request Forgery (CSRF) |
| CVE-2021-25219 | MEDIUM | 5.3 | 8.0% | Oct 27, 2021 | In BIND 9.3.0 -> 9.11.35, 9.12.0 -> 9.16.21, and versions 9.9.3-S1 -> 9.11.35-S1 and 9.16.8-S1 -> 9.16.21-S1 of BIND Sup... |
| CVE-2021-1117 | MEDIUM | 5.5 | 0.2% | Oct 27, 2021 | Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgkDdiEscape, where an attacker th... |
| CVE-2021-1116 | MEDIUM | 5.5 | 0.2% | Oct 27, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys), where a NULL poi... |
| CVE-2021-1115 | MEDIUM | 6.5 | 0.2% | Oct 27, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for priva... |
| CVE-2021-40125 | MEDIUM | 6.5 | 1.0% | Oct 27, 2021 | A vulnerability in the Internet Key Exchange Version 2 (IKEv2) implementation of Cisco Adaptive Security Appliance (ASA)... |
| CVE-2021-40118 | HIGH | 7.5 | 1.3% | Oct 27, 2021 | A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Th... |
| CVE-2021-40117 | HIGH | 7.5 | 1.5% | Oct 27, 2021 | A vulnerability in SSL/TLS message handler for Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Thre... |
| CVE-2021-40116 | HIGH | 7.5 | 1.3% | Oct 27, 2021 | Multiple Cisco products are affected by a vulnerability in Snort rules that could allow an unauthenticated, remote attac... |
| CVE-2021-40114 | HIGH | 7.5 | 2.4% | Oct 27, 2021 | Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine processes ICMP traffic tha... |
| CVE-2021-34794 | MEDIUM | 5.3 | 0.9% | Oct 27, 2021 | A vulnerability in the Simple Network Management Protocol version 3 (SNMPv3) access control functionality of Cisco Adapt... |
| CVE-2021-34793 | HIGH | 8.6 | 0.6% | Oct 27, 2021 | A vulnerability in the TCP Normalizer of Cisco Adaptive Security Appliance (ASA) Software and Firepower Threat Defense (... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now