2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-28909CRITICAL9.8BAB TECHNOLOGIE GmbH eibPort V3 prior version 3.9.1 allow unauthenticated attackers to access uncontrolled the login ser...
CVE-2021-40284MEDIUM6.5D-Link DSL-3782 EU v1.01:EU v1.03 is affected by a buffer overflow which can cause a denial of service. This vulnerabili...
CVE-2021-38727CRITICAL9.8FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/logs/items
CVE-2021-32487HIGH7.5In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser...
CVE-2021-32486HIGH7.5In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser...
CVE-2021-32485HIGH7.5In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser...
CVE-2021-32484HIGH7.5In modem 2G RRM, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of ser...
CVE-2021-38725MEDIUM5.3Fuel CMS 1.5.0 has a brute force vulnerability in fuel/modules/fuel/controllers/Login.php
CVE-2021-38723HIGH8.8FUEL CMS 1.5.0 allows SQL Injection via parameter 'col' in /fuel/index.php/fuel/pages/items
CVE-2021-38721MEDIUM6.5FUEL CMS 1.5.0 login.php contains a cross-site request forgery (CSRF) vulnerability
CVE-2021-38540CRITICAL9.8The variable import endpoint was not protected by authentication in Airflow >=2.0.0, <2.1.3. This allowed unauthenticate...
CVE-2021-22239MEDIUM4.3An unauthorized user was able to insert metadata when creating new issue on GitLab CE/EE 14.0 and later.
CVE-2021-3761HIGH7.5Any CA issuer in the RPKI can trick OctoRPKI prior to 1.3.0 into emitting an invalid VRP "MaxLength" value, causing RTR ...
CVE-2021-37101MEDIUM6.8There is an improper authorization vulnerability in AIS-BW50-00 9.0.6.2(H100SP10C00) and 9.0.6.2(H100SP15C00). Due to im...
CVE-2021-28499MEDIUM5.5In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user account passwords...
CVE-2021-28498HIGH7.8In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, user enable passwords ...
CVE-2021-28497HIGH7.8In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio...
CVE-2021-28495CRITICAL9.8In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio...
CVE-2021-28494HIGH8.8In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio...
CVE-2021-28493HIGH7.8In Arista's MOS (Metamako Operating System) software which is supported on the 7130 product line, under certain conditio...
CVE-2021-26608CRITICAL9.8An arbitrary file download and execution vulnerability was found in the HShell.dll of handysoft Co., Ltd groupware Activ...
CVE-2021-40223MEDIUM5.4Rittal CMC PU III Web management (version V3.11.00_2) fails to sanitize user input on several parameters of the configur...
CVE-2021-40222HIGH7.2Rittal CMC PU III Web management Version affected: V3.11.00_2. Version fixed: V3.17.10 is affected by a remote code exec...
CVE-2021-39459HIGH7.2Remote code execution in the modules component in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u...
CVE-2021-39458MEDIUM6.5Triggering an error page of the import process in Yakamara Media Redaxo CMS version 5.12.1 allows an authenticated CMS u...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now