2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-22015HIGH7.8The vCenter Server contains multiple local privilege escalation vulnerabilities due to improper permissions of files and...
CVE-2021-22014HIGH7.2The vCenter Server contains an authenticated code execution vulnerability in VAMI (Virtual Appliance Management Infrastr...
CVE-2021-22013HIGH7.5The vCenter Server contains a file path traversal vulnerability leading to information disclosure in the appliance manag...
CVE-2021-22012HIGH7.5The vCenter Server contains an information disclosure vulnerability due to an unauthenticated appliance management API. ...
CVE-2021-22011MEDIUM5.3vCenter Server contains an unauthenticated API endpoint vulnerability in vCenter Server Content Library. A malicious act...
CVE-2021-22010HIGH7.5The vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor with network access to ...
CVE-2021-22009HIGH7.5The vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API) service. A malicious actor ...
CVE-2021-22008HIGH7.5The vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A malicious actor wit...
CVE-2021-22007MEDIUM5.5The vCenter Server contains a local information disclosure vulnerability in the Analytics service. An authenticated user...
CVE-2021-22006HIGH7.5The vCenter Server contains a reverse proxy bypass vulnerability due to the way the endpoints handle the URI. A maliciou...
CVE-2021-22005CRITICAL9.8The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw...
CVE-2021-21993MEDIUM6.5The vCenter Server contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in vC...
CVE-2021-33035HIGH7.8Apache OpenOffice opens dBase/DBF documents and shows the contents as spreadsheets. DBF are database files with data org...
CVE-2021-34770CRITICAL9.8A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE S...
CVE-2021-34769HIGH7.5Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco...
CVE-2021-34768HIGH7.5Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco...
CVE-2021-34767HIGH7.4A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family W...
CVE-2021-34740HIGH7.4A vulnerability in the WLAN Control Protocol (WCP) implementation for Cisco Aironet Access Point (AP) software could all...
CVE-2021-34729MEDIUM6.7A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an authenticated, local...
CVE-2021-34727CRITICAL9.8A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker t...
CVE-2021-34726MEDIUM6.7A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary com...
CVE-2021-34725MEDIUM6.7A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr...
CVE-2021-34724MEDIUM6A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to elevate privileg...
CVE-2021-34723MEDIUM6.7A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an authenticated, loca...
CVE-2021-34714HIGH7.4A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IOS Software, Cisco IO...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now