2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-21569MEDIUM4.9Dell NetWorker, versions 18.x and 19.x contain a Path traversal vulnerability. A NetWorker server user with remote acces...
CVE-2021-21522MEDIUM4.4Dell BIOS contains a Credentials Management issue. A local authenticated malicious user may potentially exploit this vul...
CVE-2021-38303CRITICAL9.8A SQL injection vulnerability exists in Sureline SUREedge Migrator 7.0.7.29360.
CVE-2021-37271MEDIUM5.4Cross Site Scripting (XSS) vulnerability exists in UEditor v1.4.3.3, which can be exploited by an attacker to obtain use...
CVE-2021-37267MEDIUM6.1Cross Site Scripting (XSS) vulnerability exists in all versions of KindEditor, which can be exploited by an attacker to ...
CVE-2021-30086MEDIUM6.1Cross Site Scripting (XSS) vulnerability exists in KindEditor (Chinese versions) 4.1.12, which can be exploited by an at...
CVE-2021-41318MEDIUM6.1In Progress WhatsUp Gold prior to version 21.1.0, an application endpoint failed to adequately sanitize malicious input....
CVE-2021-37273HIGH7.5A Denial of Service issue exists in China Telecom Corporation EPON Tianyi Gateway ZXHN F450(EPON ONU) 3.0. Tianyi Gatewa...
CVE-2021-36366CRITICAL9.8Nagios XI before 5.8.5 incorrectly allows manage_services.sh wildcards.
CVE-2021-36365CRITICAL9.8Nagios XI before 5.8.5 has Incorrect Permission Assignment for repairmysql.sh.
CVE-2021-36364CRITICAL9.8Nagios XI before 5.8.5 incorrectly allows backup_xi.sh wildcards.
CVE-2021-36363CRITICAL9.8Nagios XI before 5.8.5 has Incorrect Permission Assignment for migrate.php.
CVE-2021-41104HIGH7.5ESPHome is a system to control the ESP8266/ESP32. Anyone with web_server enabled and HTTP basic auth configured on versi...
CVE-2021-29367HIGH7.8A buffer overflow vulnerability in WPG+0x1dda of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted...
CVE-2021-29366HIGH7.8A buffer overflow vulnerability in FORMATS!GetPlugInInfo+0x2de9 of Irfanview 4.57 allows attackers to execute arbitrary ...
CVE-2021-29365MEDIUM5.5Irfanview 4.57 is affected by an infinite loop when processing a crafted BMP file in the EFFECTS!AutoCrop_W component. T...
CVE-2021-29364HIGH7.8A buffer overflow vulnerability in Formats!ReadRAS_W+0x1001 of Irfanview 4.57 allows attackers to execute arbitrary code...
CVE-2021-29363HIGH7.8A buffer overflow vulnerability in FORMATS!ReadRAS_W+0xa74 of Irfanview 4.57 allows attackers to execute arbitrary code ...
CVE-2021-29362HIGH7.8A buffer overflow vulnerability in FORMATS!ReadRAS_W+0xa30 of Irfanview 4.57 allows attackers to execute arbitrary code ...
CVE-2021-29361HIGH7.8A buffer overflow vulnerability in FORMATS!Read_Utah_RLE+0x340 of Irfanview 4.57 allows attackers to execute arbitrary c...
CVE-2021-29360HIGH7.8A buffer overflow vulnerability in FORMATS!Read_Utah_RLE+0x37a of Irfanview 4.57 allows attackers to execute arbitrary c...
CVE-2021-29358MEDIUM5.5A buffer overflow vulnerability in FORMATS!ReadPVR_W+0xfa of Irfanview 4.57 allows attackers to cause a denial of servic...
CVE-2021-37106HIGH7.2There is a command injection vulnerability in CMA service module of FusionCompute 6.3.0, 6.3.1, 6.5.0 and 8.0.0 when pro...
CVE-2021-37105HIGH7.5There is an improper file upload control vulnerability in FusionCompute 6.5.0, 6.5.1 and 8.0.0. Due to the improper veri...
CVE-2021-37104HIGH7.5There is a server-side request forgery vulnerability in HUAWEI P40 versions 10.1.0.118(C00E116R3P3). This vulnerability ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now