2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22015 | HIGH | 7.8 | 1.8% | Sep 23, 2021 | The vCenter Server contains multiple local privilege escalation vulnerabilities due to improper permissions of files and... |
| CVE-2021-22014 | HIGH | 7.2 | 1.5% | Sep 23, 2021 | The vCenter Server contains an authenticated code execution vulnerability in VAMI (Virtual Appliance Management Infrastr... |
| CVE-2021-22013 | HIGH | 7.5 | 1.6% | Sep 23, 2021 | The vCenter Server contains a file path traversal vulnerability leading to information disclosure in the appliance manag... |
| CVE-2021-22012 | HIGH | 7.5 | 1.3% | Sep 23, 2021 | The vCenter Server contains an information disclosure vulnerability due to an unauthenticated appliance management API. ... |
| CVE-2021-22011 | MEDIUM | 5.3 | 1.1% | Sep 23, 2021 | vCenter Server contains an unauthenticated API endpoint vulnerability in vCenter Server Content Library. A malicious act... |
| CVE-2021-22010 | HIGH | 7.5 | 1.6% | Sep 23, 2021 | The vCenter Server contains a denial-of-service vulnerability in VPXD service. A malicious actor with network access to ... |
| CVE-2021-22009 | HIGH | 7.5 | 1.4% | Sep 23, 2021 | The vCenter Server contains multiple denial-of-service vulnerabilities in VAPI (vCenter API) service. A malicious actor ... |
| CVE-2021-22008 | HIGH | 7.5 | 1.6% | Sep 23, 2021 | The vCenter Server contains an information disclosure vulnerability in VAPI (vCenter API) service. A malicious actor wit... |
| CVE-2021-22007 | MEDIUM | 5.5 | 0.2% | Sep 23, 2021 | The vCenter Server contains a local information disclosure vulnerability in the Analytics service. An authenticated user... |
| CVE-2021-22006 | HIGH | 7.5 | 6.3% | Sep 23, 2021 | The vCenter Server contains a reverse proxy bypass vulnerability due to the way the endpoints handle the URI. A maliciou... |
| CVE-2021-22005 | CRITICAL | 9.8 | 100.0% | Sep 23, 2021 | The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with netw... |
| CVE-2021-21993 | MEDIUM | 6.5 | 0.9% | Sep 23, 2021 | The vCenter Server contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in vC... |
| CVE-2021-33035 | HIGH | 7.8 | 50.6% | Sep 23, 2021 | Apache OpenOffice opens dBase/DBF documents and shows the contents as spreadsheets. DBF are database files with data org... |
| CVE-2021-34770 | CRITICAL | 9.8 | 2.9% | Sep 23, 2021 | A vulnerability in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco IOS XE S... |
| CVE-2021-34769 | HIGH | 7.5 | 1.3% | Sep 23, 2021 | Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco... |
| CVE-2021-34768 | HIGH | 7.5 | 1.3% | Sep 23, 2021 | Multiple vulnerabilities in the Control and Provisioning of Wireless Access Points (CAPWAP) protocol processing of Cisco... |
| CVE-2021-34767 | HIGH | 7.4 | 0.8% | Sep 23, 2021 | A vulnerability in IPv6 traffic processing of Cisco IOS XE Wireless Controller Software for Cisco Catalyst 9000 Family W... |
| CVE-2021-34740 | HIGH | 7.4 | 0.3% | Sep 23, 2021 | A vulnerability in the WLAN Control Protocol (WCP) implementation for Cisco Aironet Access Point (AP) software could all... |
| CVE-2021-34729 | MEDIUM | 6.7 | 0.3% | Sep 23, 2021 | A vulnerability in the CLI of Cisco IOS XE SD-WAN Software and Cisco IOS XE Software could allow an authenticated, local... |
| CVE-2021-34727 | CRITICAL | 9.8 | 2.5% | Sep 23, 2021 | A vulnerability in the vDaemon process in Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker t... |
| CVE-2021-34726 | MEDIUM | 6.7 | 0.4% | Sep 23, 2021 | A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary com... |
| CVE-2021-34725 | MEDIUM | 6.7 | 0.3% | Sep 23, 2021 | A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr... |
| CVE-2021-34724 | MEDIUM | 6 | 0.3% | Sep 23, 2021 | A vulnerability in the Cisco IOS XE SD-WAN Software CLI could allow an authenticated, local attacker to elevate privileg... |
| CVE-2021-34723 | MEDIUM | 6.7 | 0.2% | Sep 23, 2021 | A vulnerability in a specific CLI command that is run on Cisco IOS XE SD-WAN Software could allow an authenticated, loca... |
| CVE-2021-34714 | HIGH | 7.4 | 0.4% | Sep 23, 2021 | A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software, Cisco IOS Software, Cisco IO... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now