2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-41030CRITICAL9.1An authentication bypass by capture-replay vulnerability [CWE-294] in FortiClient EMS versions 7.0.1 and below and 6.4.4...
CVE-2021-41063CRITICAL9.8SQL injection vulnerability was discovered in Aanderaa GeoView Webservice prior to version 2.1.3 that could allow an una...
CVE-2021-3815CRITICAL9.8utils.js is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2021-37051CRITICAL9.1There is an Out-of-bounds read vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus...
CVE-2021-37049CRITICAL9.8There is a Heap-based buffer overflow vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability m...
CVE-2021-37045CRITICAL9.8There is an UAF vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may cause the device to...
CVE-2021-37040CRITICAL9.8There is a Parameter injection vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may caus...
CVE-2021-26109CRITICAL9.8An integer overflow or wraparound vulnerability in the memory allocator of SSLVPN in FortiOS before 7.0.1 may allow an u...
CVE-2021-44557CRITICAL9.1National Library of the Netherlands multiNER <= c0440948057afc6e3d6b4903a7c05e666b94a3bc is affected by an XML External ...
CVE-2021-44556CRITICAL9.1National Library of the Netherlands digger < 6697d1269d981e35e11f240725b16401b5ce3db5 is affected by a XML External Enti...
CVE-2021-20045CRITICAL9.8A buffer overflow vulnerability in SMA100 sonicfiles RAC_COPY_TO (RacNumber 36) method allows a remote unauthenticated a...
CVE-2021-20042CRITICAL9.8An unauthenticated remote attacker can use SMA 100 as an unintended proxy or intermediary undetectable proxy to bypass f...
CVE-2021-20038CRITICAL9.8A Stack-based buffer overflow vulnerability in SMA100 Apache httpd server's mod_cgi module environment variables allows ...
CVE-2021-38759CRITICAL9.8Raspberry Pi OS through 5.10 has the raspberry default password for the pi account. If not changed, attackers can gain a...
CVE-2021-41716CRITICAL9.8Maharashtra State Electricity Board Mahavitara Android Application 8.20 and prior is vulnerable to remote account takeov...
CVE-2021-40859CRITICAL9.8Backdoors were discovered in Auerswald COMpact 5500R 7.8A and 8.0B devices, that allow attackers with access to the web ...
CVE-2021-24041CRITICAL9.8A missing bounds check in image blurring code prior to WhatsApp for Android v2.21.22.7 and WhatsApp Business for Android...
CVE-2021-43789CRITICAL9.8PrestaShop is an Open Source e-commerce web application. Versions of PrestaShop prior to 1.7.8.2 are vulnerable to blind...
CVE-2021-37099CRITICAL9.1There is a Path Traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to d...
CVE-2021-37095CRITICAL9.8There is a Integer Overflow or Wraparound vulnerability in Huawei Smartphone.Successful exploitation of this vulnerabili...
CVE-2021-37088CRITICAL9.1There is a Path Traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to a...
CVE-2021-37087CRITICAL9.1There is a Path Traversal vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability may lead to a...
CVE-2021-37084CRITICAL9.8There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability ma...
CVE-2021-37079CRITICAL9.1There is a Improper Input Validation vulnerability in Huawei Smartphone.Successful exploitation of this vulnerability ma...
CVE-2021-37065CRITICAL9.1There is a Integer Overflow or Wraparound vulnerability in Huawei Smartphone.Successful exploitation of this vulnerabili...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now