2021 CVE Vulnerabilities

23,452 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-33732HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker...
CVE-2021-33731HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker...
CVE-2021-33730HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker...
CVE-2021-33729HIGH8.8A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker that is a...
CVE-2021-33728HIGH7.2A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to uploa...
CVE-2021-33727MEDIUM6.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could dow...
CVE-2021-33726HIGH7.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to downl...
CVE-2021-33725CRITICAL9.1A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to delet...
CVE-2021-33724CRITICAL9.1A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system contains an Arb...
CVE-2021-33723MEDIUM6.5A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could cha...
CVE-2021-33722MEDIUM4.9A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system has a Path Trav...
CVE-2021-27395HIGH8.1A vulnerability has been identified in SIMATIC Process Historian 2013 and earlier (All versions), SIMATIC Process Histor...
CVE-2021-42009MEDIUM4.3An authenticated Apache Traffic Control Traffic Ops user with Portal-level privileges can send a request with a speciall...
CVE-2021-23448CRITICAL9.8All versions of package config-handler are vulnerable to Prototype Pollution when loading config files.
CVE-2021-42260HIGH7.5TinyXML through 2.6.2 has an infinite loop in TiXmlParsingData::Stamp in tinyxmlparser.cpp via the TIXML_UTF_LEAD_0 case...
CVE-2021-42257HIGH7.1check_smart before 6.9.1 allows unintended drive access by an unprivileged user because it only checks for a substring m...
CVE-2021-42252HIGH7.8An issue was discovered in aspeed_lpc_ctrl_mmap in drivers/soc/aspeed/aspeed-lpc-ctrl.c in the Linux kernel before 5.14....
CVE-2021-40617CRITICAL9.8An SQL Injection vulnerability exists in openSIS Community Edition version 8.0 via ForgotPassUserName.php.
CVE-2021-40239CRITICAL9.8A Buffer Overflow vulnerability exists in the latest version of Miniftpd in the do_retr function in ftpproto.c
CVE-2021-40189HIGH7.2PHPFusion 9.03.110 is affected by a remote code execution vulnerability. The theme function will extract a file to "webr...
CVE-2021-40188HIGH7.2PHPFusion 9.03.110 is affected by an arbitrary file upload vulnerability. The File Manager function in admin panel does ...
CVE-2021-25738MEDIUM6.7Loading specially-crafted yaml with the Kubernetes Java Client library can lead to code execution.
CVE-2021-41117CRITICAL9.1keypair is a a RSA PEM key generator written in javascript. keypair implements a lot of cryptographic primitives on its ...
CVE-2021-32028MEDIUM6.5A flaw was found in postgresql. Using an INSERT ... ON CONFLICT ... DO UPDATE command on a purpose-crafted table, an aut...
CVE-2021-27002HIGH7.5NetApp Cloud Manager versions prior to 3.9.10 are susceptible to a vulnerability which could allow a remote unauthentica...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now