2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-35084 | HIGH | 7.1 | 0.1% | Jun 14, 2022 | Possible out of bound read due to lack of length check of data length for a DIAG event in Snapdragon Auto, Snapdragon Co... |
| CVE-2021-35082 | HIGH | 8.1 | 0.5% | Jun 14, 2022 | Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC security mode co... |
| CVE-2021-35078 | HIGH | 7.5 | 0.4% | Jun 14, 2022 | Possible memory leak due to improper validation of certificate chain length while parsing server certificate chain in Sn... |
| CVE-2021-35076 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible null pointer dereference due to improper validation of RRC connection reconfiguration message in Snapdragon Aut... |
| CVE-2021-35073 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Possible assertion due to improper validation of rank restriction field in Snapdragon Auto, Snapdragon Compute, Snapdrag... |
| CVE-2021-35072 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Possible buffer overflow due to improper validation of array index while processing external DIAG command in Snapdragon ... |
| CVE-2021-30350 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Lack of MBN header size verification against input buffer can lead to memory corruption in Snapdragon Auto, Snapdragon C... |
| CVE-2021-30347 | HIGH | 8.1 | 0.5% | Jun 14, 2022 | Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC Command packet h... |
| CVE-2021-30344 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Improper authorization of a replayed LTE security mode command can lead to a denial of service in Snapdragon Auto, Snapd... |
| CVE-2021-30340 | HIGH | 7.5 | 0.6% | Jun 14, 2022 | Reachable assertion due to improper validation of coreset in PDCCH configuration in SA mode in Snapdragon Auto, Snapdrag... |
| CVE-2021-30334 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Possible use after free due to lack of null check of DRM file status after file structure is freed in Snapdragon Auto, S... |
| CVE-2021-30281 | HIGH | 7.8 | 0.2% | Jun 14, 2022 | Possible unauthorized access to secure space due to improper check of data allowed while flashing the no access control ... |
| CVE-2021-46813 | HIGH | 7.5 | 0.6% | Jun 13, 2022 | Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of thi... |
| CVE-2021-46812 | HIGH | 7.5 | 0.5% | Jun 13, 2022 | The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may af... |
| CVE-2021-46814 | HIGH | 7.5 | 0.6% | Jun 13, 2022 | The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability ... |
| CVE-2021-46818 | HIGH | 7.8 | 1.9% | Jun 13, 2022 | Adobe Media Encoder version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated att... |
| CVE-2021-46817 | HIGH | 7.8 | 1.9% | Jun 13, 2022 | Adobe Media Encoder version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated att... |
| CVE-2021-46816 | HIGH | 7.8 | 1.4% | Jun 13, 2022 | Adobe Premiere Pro version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated atta... |
| CVE-2021-41641 | HIGH | 8.4 | 0.4% | Jun 12, 2022 | Deno <=1.14.0 file sandbox does not handle symbolic links correctly. When running Deno with specific write access, the D... |
| CVE-2021-41738 | HIGH | 8.8 | 1.7% | Jun 11, 2022 | ZeroShell 3.9.5 has a command injection vulnerability in /cgi-bin/kerbynet IP parameter, which may allow an authenticate... |
| CVE-2021-44582 | HIGH | 8.8 | 1.4% | Jun 10, 2022 | A Privilege Escalation vulnerability exists in Sourcecodester Money Transfer Management System 1.0, which allows a remot... |
| CVE-2021-44117 | HIGH | 8.8 | 1.3% | Jun 10, 2022 | A Cross Site Request Forgery (CSRF) vulnerability exists in TheDayLightStudio Fuel CMS 1.5.0 via a POST call to /fuel/si... |
| CVE-2021-40961 | HIGH | 8.8 | 1.6% | Jun 9, 2022 | CMS Made Simple <=2.2.15 is affected by SQL injection in modules/News/function.admin_articlestab.php. The $sortby variab... |
| CVE-2021-40668 | HIGH | 8.1 | 1.1% | Jun 9, 2022 | The Android application HTTP File Server (Version 1.4.1) by 'slowscript' is affected by a path traversal vulnerability t... |
| CVE-2021-36710 | HIGH | 8.8 | 0.3% | Jun 8, 2022 | ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT addr... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now