2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-39259HIGH7.8A crafted NTFS image can trigger an out-of-bounds access, caused by an unsanitized attribute length in ntfs_inode_lookup...
CVE-2021-39258HIGH7.8A crafted NTFS image can cause out-of-bounds reads in ntfs_attr_find and ntfs_external_attr_find in NTFS-3G < 2021.8.22.
CVE-2021-39257MEDIUM5.5A crafted NTFS image with an unallocated bitmap can lead to a endless recursive function call chain (starting from ntfs_...
CVE-2021-39256HIGH7.8A crafted NTFS image can cause a heap-based buffer overflow in ntfs_inode_lookup_by_name in NTFS-3G < 2021.8.22.
CVE-2021-39255HIGH7.8A crafted NTFS image can trigger an out-of-bounds read, caused by an invalid attribute in ntfs_attr_find_in_attrdef, in ...
CVE-2021-39254HIGH7.8A crafted NTFS image can cause an integer overflow in memmove, leading to a heap-based buffer overflow in the function n...
CVE-2021-39253HIGH7.8A crafted NTFS image can cause an out-of-bounds read in ntfs_runlists_merge_i in NTFS-3G < 2021.8.22.
CVE-2021-39252HIGH7.8A crafted NTFS image can cause an out-of-bounds read in ntfs_ie_lookup in NTFS-3G < 2021.8.22.
CVE-2021-39251HIGH7.8A crafted NTFS image can cause a NULL pointer dereference in ntfs_extent_inode_open in NTFS-3G < 2021.8.22.
CVE-2021-35267HIGH7.8NTFS-3G versions < 2021.8.22, a stack buffer overflow can occur when correcting differences in the MFT and MFTMirror all...
CVE-2021-35266HIGH7.8In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode pathname is supplied in an NTFS image a heap buffer...
CVE-2021-33287HIGH7.8In NTFS-3G versions < 2021.8.22, when specially crafted NTFS attributes are read in the function ntfs_attr_pread_i, a he...
CVE-2021-33286HIGH7.8In NTFS-3G versions < 2021.8.22, when a specially crafted unicode string is supplied in an NTFS image a heap buffer over...
CVE-2021-35269HIGH7.8NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute from the MFT is setup in the function ntfs_attr_se...
CVE-2021-35268HIGH7.8In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS inode is loaded in the function ntfs_inode_real_open, a h...
CVE-2021-33289HIGH7.8In NTFS-3G versions < 2021.8.22, when a specially crafted MFT section is supplied in an NTFS image a heap buffer overflo...
CVE-2021-33285HIGH7.8In NTFS-3G versions < 2021.8.22, when a specially crafted NTFS attribute is supplied to the function ntfs_get_attribute_...
CVE-2021-27022MEDIUM4.9A flaw was discovered in bolt-server and ace where running a task with sensitive parameters results in those sensitive p...
CVE-2021-39285MEDIUM6.1A XSS vulnerability exists in Versa Director Release: 16.1R2 Build: S8. An attacker can use the administration web inter...
CVE-2021-37733MEDIUM4.9A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softw...
CVE-2021-37731MEDIUM6.2A local path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softwa...
CVE-2021-37729MEDIUM6.5A remote path traversal vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Softw...
CVE-2021-37728MEDIUM6.5A remote path traversal vulnerability was discovered in Aruba Operating System Software version(s): Prior to 8.8.0.1, 8....
CVE-2021-37725HIGH8.1A remote cross-site request forgery (csrf) vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Ope...
CVE-2021-37724HIGH7.2A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior t...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now