2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1934 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | Possible memory corruption due to improper check when application loader object is explicitly destructed while applicati... |
| CVE-2021-1933 | CRITICAL | 9.8 | 0.8% | Sep 9, 2021 | UE assertion is possible due to improper validation of invite message with SDP body in Snapdragon Auto, Snapdragon Compu... |
| CVE-2021-1909 | HIGH | 7.8 | 0.2% | Sep 9, 2021 | Buffer overflow occurs in trusted applications due to lack of length check of parameters in Snapdragon Auto, Snapdragon ... |
| CVE-2021-34786 | MEDIUM | 4.9 | 1.0% | Sep 9, 2021 | Multiple vulnerabilities in Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacke... |
| CVE-2021-34785 | HIGH | 7.2 | 1.2% | Sep 9, 2021 | Multiple vulnerabilities in Cisco BroadWorks CommPilot Application Software could allow an authenticated, remote attacke... |
| CVE-2021-34771 | MEDIUM | 5.5 | 0.3% | Sep 9, 2021 | A vulnerability in the Cisco IOS XR Software CLI could allow an authenticated, local attacker to view more information t... |
| CVE-2021-34737 | HIGH | 7.5 | 1.3% | Sep 9, 2021 | A vulnerability in the DHCP version 4 (DHCPv4) server feature of Cisco IOS XR Software could allow an unauthenticated, r... |
| CVE-2021-34728 | HIGH | 7.8 | 0.3% | Sep 9, 2021 | Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-pri... |
| CVE-2021-34722 | MEDIUM | 6.7 | 0.3% | Sep 9, 2021 | Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access... |
| CVE-2021-34721 | MEDIUM | 6.7 | 0.3% | Sep 9, 2021 | Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to gain access... |
| CVE-2021-34720 | HIGH | 8.6 | 1.2% | Sep 9, 2021 | A vulnerability in the IP Service Level Agreements (IP SLA) responder and Two-Way Active Measurement Protocol (TWAMP) fe... |
| CVE-2021-34719 | HIGH | 7.8 | 0.3% | Sep 9, 2021 | Multiple vulnerabilities in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker with a low-pri... |
| CVE-2021-34718 | HIGH | 8.1 | 1.5% | Sep 9, 2021 | A vulnerability in the SSH Server process of Cisco IOS XR Software could allow an authenticated, remote attacker to over... |
| CVE-2021-34713 | HIGH | 7.4 | 0.3% | Sep 9, 2021 | A vulnerability in the Layer 2 punt code of Cisco IOS XR Software running on Cisco ASR 9000 Series Aggregation Services ... |
| CVE-2021-34709 | MEDIUM | 6.4 | 0.1% | Sep 9, 2021 | Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only... |
| CVE-2021-34708 | MEDIUM | 6.7 | 0.2% | Sep 9, 2021 | Multiple vulnerabilities in image verification checks of Cisco Network Convergence System (NCS) 540 Series Routers, only... |
| CVE-2021-32836 | HIGH | 8.1 | 2.0% | Sep 9, 2021 | ZStack is open source IaaS(infrastructure as a service) software. In ZStack before versions 3.10.12 and 4.1.6 there is a... |
| CVE-2021-32835 | CRITICAL | 9.9 | 4.4% | Sep 9, 2021 | Eclipse Keti is a service that was designed to protect RESTfuls API using Attribute Based Access Control (ABAC). In Keti... |
| CVE-2021-32834 | CRITICAL | 9.9 | 0.9% | Sep 9, 2021 | Eclipse Keti is a service that was designed to protect RESTfuls API using Attribute Based Access Control (ABAC). In Keti... |
| CVE-2021-32833 | HIGH | 8.6 | 1.2% | Sep 9, 2021 | Emby Server is a personal media server with apps on many devices. In Emby Server on Windows there is a set of arbitrary ... |
| CVE-2021-40818 | CRITICAL | 9.8 | 1.4% | Sep 8, 2021 | scheme/webauthn.c in Glewlwyd SSO server through 2.5.3 has a buffer overflow during FIDO2 signature validation in webaut... |
| CVE-2021-40814 | CRITICAL | 9.8 | 1.0% | Sep 8, 2021 | The Customer Photo Gallery addon before 2.9.4 for PrestaShop is vulnerable to SQL injection. |
| CVE-2021-40812 | MEDIUM | 6.5 | 1.5% | Sep 8, 2021 | The GD Graphics Library (aka LibGD) through 2.3.2 has an out-of-bounds read because of the lack of certain gdGetBuf and ... |
| CVE-2021-36440 | CRITICAL | 9.8 | 4.7% | Sep 8, 2021 | Unrestricted File Upload in ShowDoc v2.9.5 allows remote attackers to execute arbitrary code via the 'file_url' paramete... |
| CVE-2021-30605 | HIGH | 7.8 | 0.1% | Sep 8, 2021 | Inappropriate implementation in the ChromeOS Readiness Tool installer on Windows prior to 1.0.2.0 loosens DCOM access ri... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now