2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-46835MEDIUM4.3There is a traffic hijacking vulnerability in WS7200-10 11.0.2.13. Successful exploitation of this vulnerability can cau...
CVE-2021-46834MEDIUM5.5A permission bypass vulnerability in Huawei cross device task management could allow an attacker to access certain resou...
CVE-2021-33081MEDIUM4.4Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially en...
CVE-2021-33079MEDIUM4.4Protection mechanism failure in firmware for some Intel(R) SSD DC Products may allow a privileged user to potentially en...
CVE-2021-33076MEDIUM6.8Improper authentication in firmware for some Intel(R) SSD DC Products may allow an unauthenticated user to potentially e...
CVE-2021-42597MEDIUM5.4A Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Storage Unit Rental Management System PHP 8.0.10 , A...
CVE-2021-41731MEDIUM4.8Cross Site Scripting (XSS vulnerability exists in )Sourcecodester News247 News Magazine (CMS) PHP 5.6 or higher and MySQ...
CVE-2021-44076MEDIUM4.8An issue was discovered in CrushFTP 9. The creation of a new user through the /WebInterface/UserManager/ interface allow...
CVE-2021-36568MEDIUM5.4In certain Moodle products after creating a course, it is possible to add in a arbitrary "Topic" a resource, in this cas...
CVE-2021-44425MEDIUM6.5An issue was discovered in AnyDesk before 6.2.6 and 6.3.x before 6.3.3. An unnecessarily open listening port on a machin...
CVE-2021-40648MEDIUM5.5In man2html 1.6g, a filename can be created to overwrite the previous size parameter of the next chunk and the fd, bk, f...
CVE-2021-40647MEDIUM5.5In man2html 1.6g, a specific string being read in from a file will overwrite the size parameter in the top chunk of the ...
CVE-2021-36829MEDIUM4.8Authenticated (admin+) Stored Cross-Site Scripting (XSS) vulnerability in MyThemeShop Launcher: Coming Soon & Maintenanc...
CVE-2021-43080MEDIUM5.4An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS version 7.2.0, version ...
CVE-2021-43076MEDIUM6.5An improper privilege management vulnerability [CWE-269] in FortiADC versions 6.2.1 and below, 6.1.5 and below, 6.0.4 an...
CVE-2021-44718MEDIUM5.9wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sendi...
CVE-2021-35135MEDIUM5.5A null pointer dereference may potentially occur during RSA key import in Snapdragon Auto, Snapdragon Compute, Snapdrago...
CVE-2021-35133MEDIUM6.7Use after free in the synx driver issue while performing other functions during multiple invocation of synx release call...
CVE-2021-35113MEDIUM6.8Possible authentication bypass due to improper order of signature verification and hashing in the signature verification...
CVE-2021-35109MEDIUM6.8Possible address manipulation from APP-NS while APP-S is configuring an RG where it tries to merge the address ranges in...
CVE-2021-35108MEDIUM6.8Improper checking of AP-S lock bit while verifying the secure resource group permissions can lead to non secure read and...
CVE-2021-35097MEDIUM6.8Possible authentication bypass due to improper order of signature verification and hashing in the signature verification...
CVE-2021-3826MEDIUM6.5Heap/stack buffer overflow in the dlang_lname function in d-demangle.c in libiberty allows attackers to potentially caus...
CVE-2021-39045MEDIUM5.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 could allow a local attacker to obtain information due to the autocomple...
CVE-2021-39009MEDIUM5.5IBM Cognos Analytics 11.1.7, 11.2.0, and 11.2.1 stores user credentials in plain clear text which can be read by a local...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now