2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-35084HIGH7.1Possible out of bound read due to lack of length check of data length for a DIAG event in Snapdragon Auto, Snapdragon Co...
CVE-2021-35082HIGH8.1Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC security mode co...
CVE-2021-35078HIGH7.5Possible memory leak due to improper validation of certificate chain length while parsing server certificate chain in Sn...
CVE-2021-35076HIGH7.5Possible null pointer dereference due to improper validation of RRC connection reconfiguration message in Snapdragon Aut...
CVE-2021-35073HIGH7.5Possible assertion due to improper validation of rank restriction field in Snapdragon Auto, Snapdragon Compute, Snapdrag...
CVE-2021-35072HIGH7.8Possible buffer overflow due to improper validation of array index while processing external DIAG command in Snapdragon ...
CVE-2021-30350HIGH7.8Lack of MBN header size verification against input buffer can lead to memory corruption in Snapdragon Auto, Snapdragon C...
CVE-2021-30347HIGH8.1Improper integrity check can lead to race condition between tasks PDCP and RRC? right after a valid RRC Command packet h...
CVE-2021-30344HIGH7.5Improper authorization of a replayed LTE security mode command can lead to a denial of service in Snapdragon Auto, Snapd...
CVE-2021-30340HIGH7.5Reachable assertion due to improper validation of coreset in PDCCH configuration in SA mode in Snapdragon Auto, Snapdrag...
CVE-2021-30334HIGH7.8Possible use after free due to lack of null check of DRM file status after file structure is freed in Snapdragon Auto, S...
CVE-2021-30281HIGH7.8Possible unauthorized access to secure space due to improper check of data allowed while flashing the no access control ...
CVE-2021-46813HIGH7.5Vulnerability of residual files not being deleted after an update in the ChinaDRM module. Successful exploitation of thi...
CVE-2021-46812HIGH7.5The Device Manager has a vulnerability in multi-device interaction. Successful exploitation of this vulnerability may af...
CVE-2021-46814HIGH7.5The video framework has an out-of-bounds memory read/write vulnerability. Successful exploitation of this vulnerability ...
CVE-2021-46818HIGH7.8Adobe Media Encoder version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated att...
CVE-2021-46817HIGH7.8Adobe Media Encoder version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated att...
CVE-2021-46816HIGH7.8Adobe Premiere Pro version 15.4 (and earlier) are affected by a memory corruption vulnerability. An unauthenticated atta...
CVE-2021-41641HIGH8.4Deno <=1.14.0 file sandbox does not handle symbolic links correctly. When running Deno with specific write access, the D...
CVE-2021-41738HIGH8.8ZeroShell 3.9.5 has a command injection vulnerability in /cgi-bin/kerbynet IP parameter, which may allow an authenticate...
CVE-2021-44582HIGH8.8A Privilege Escalation vulnerability exists in Sourcecodester Money Transfer Management System 1.0, which allows a remot...
CVE-2021-44117HIGH8.8A Cross Site Request Forgery (CSRF) vulnerability exists in TheDayLightStudio Fuel CMS 1.5.0 via a POST call to /fuel/si...
CVE-2021-40961HIGH8.8CMS Made Simple <=2.2.15 is affected by SQL injection in modules/News/function.admin_articlestab.php. The $sortby variab...
CVE-2021-40668HIGH8.1The Android application HTTP File Server (Version 1.4.1) by 'slowscript' is affected by a path traversal vulnerability t...
CVE-2021-36710HIGH8.8ToaruOS 1.99.2 is affected by incorrect access control via the kernel. Improper MMU management and having a low GDT addr...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now