2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-28909 | CRITICAL | 9.8 | 1.3% | Sep 9, 2021 | BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access uncontrolled the login ser... |
| CVE-2021-40284 | MEDIUM | 6.5 | 2.5% | Sep 9, 2021 | D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer overflow which can cause a denial of service. This vulnerabili... |
| CVE-2021-38727 | CRITICAL | 9.8 | 1.6% | Sep 9, 2021 | FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/logs/items |
| CVE-2021-32487 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32486 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32485 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-32484 | HIGH | 7.5 | 2.3% | Sep 9, 2021 | In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser... |
| CVE-2021-38725 | MEDIUM | 5.3 | 0.8% | Sep 9, 2021 | Fuel CMS 1.5.0 has a brute force vulnerability in fuel/modules/fuel/controllers/Login.php |
| CVE-2021-38723 | HIGH | 8.8 | 1.0% | Sep 9, 2021 | FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/pages/items |
| CVE-2021-38721 | MEDIUM | 6.5 | 0.6% | Sep 9, 2021 | FUEL CMS 1.5.0 login.php contains a cross-site request forgery (CSRF) vulnerability |
| CVE-2021-38540 | CRITICAL | 9.8 | 80.9% | Sep 9, 2021 | The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticate... |
| CVE-2021-22239 | MEDIUM | 4.3 | 0.6% | Sep 9, 2021 | An unauthorized user was able to insert metadata when creating new issue on GitLab CE/EE 14.0 and later. |
| CVE-2021-3761 | HIGH | 7.5 | 1.2% | Sep 9, 2021 | Any CA issuer in the RPKI can trick OctoRPKI prior to 1.3.0 into emitting an invalid VRP "MaxLength" value, causing RTR ... |
| CVE-2021-37101 | MEDIUM | 6.8 | 0.2% | Sep 9, 2021 | There is an improper authorization vulnerability in AIS-BW50-00 9.0.6.2(H100SP10C00) and 9.0.6.2(H100SP15C00). Due to im... |
| CVE-2021-28499 | MEDIUM | 5.5 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user account passwords... |
| CVE-2021-28498 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user enable passwords ... |
| CVE-2021-28497 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-28495 | CRITICAL | 9.8 | 0.9% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-28494 | HIGH | 8.8 | 0.8% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-28493 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio... |
| CVE-2021-26608 | CRITICAL | 9.8 | 0.6% | Sep 9, 2021 | An arbitrary file download and execution vulnerability was found in the HShell.dll of handysoft Co., Ltd groupware Activ... |
| CVE-2021-40223 | MEDIUM | 5.4 | 0.6% | Sep 9, 2021 | Rittal CMC PU III Web management (version V3.11.00_2) fails to sanitize user input on several parameters of the configur... |
| CVE-2021-40222 | HIGH | 7.2 | 4.5% | Sep 9, 2021 | Rittal CMC PU III Web management Version affected: V3.11.00_2. Version fixed: V3.17.10 is affected by a remote code exec... |
| CVE-2021-39459 | HIGH | 7.2 | 4.6% | Sep 9, 2021 | Remote code execution in the modules component in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u... |
| CVE-2021-39458 | MEDIUM | 6.5 | 1.2% | Sep 9, 2021 | Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now