2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37723 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba Operating System Software version(s): Prior t... |
| CVE-2021-37722 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37721 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37720 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37719 | HIGH | 7.2 | 2.8% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37718 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37717 | HIGH | 7.2 | 3.0% | Sep 7, 2021 | A remote arbitrary command execution vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating... |
| CVE-2021-37716 | CRITICAL | 9.8 | 2.3% | Sep 7, 2021 | A remote buffer overflow vulnerability was discovered in Aruba SD-WAN Software and Gateways; Aruba Operating System Soft... |
| CVE-2021-33599 | MEDIUM | 5.5 | 0.4% | Sep 7, 2021 | A vulnerability affecting F-Secure Antivirus engine was discovered whereby scanning WIM archive file can lead to denial-... |
| CVE-2021-38698 | MEDIUM | 6.5 | 1.5% | Sep 7, 2021 | HashiCorp Consul and Consul Enterprise 1.10.1 Txn.Apply endpoint allowed services to register proxies for other services... |
| CVE-2021-38617 | HIGH | 8.8 | 1.4% | Sep 7, 2021 | In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/user/ user creation endpoint allows a standard user to cre... |
| CVE-2021-38616 | HIGH | 8.8 | 1.3% | Sep 7, 2021 | In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/user/{user-guid}/ user edition endpoint could permit any l... |
| CVE-2021-38615 | HIGH | 8.1 | 0.9% | Sep 7, 2021 | In Eigen NLP 3.10.1, a lack of access control on the /auth/v1/sso/config/ SSO configuration endpoint allows any logged-i... |
| CVE-2021-37219 | HIGH | 8.8 | 1.2% | Sep 7, 2021 | HashiCorp Consul and Consul Enterprise 1.10.1 Raft RPC layer allows non-server agents with a valid certificate signed by... |
| CVE-2021-37218 | HIGH | 8.8 | 0.7% | Sep 7, 2021 | HashiCorp Nomad and Nomad Enterprise Raft RPC layer allows non-server agents with a valid certificate signed by the same... |
| CVE-2021-36717 | HIGH | 7.5 | 0.9% | Sep 7, 2021 | Synerion TimeNet version 9.21 contains a directory traversal vulnerability where, on the "Name" parameter, the attacker ... |
| CVE-2021-36696 | MEDIUM | 5.4 | 0.6% | Sep 7, 2021 | Deskpro cloud and on-premise Deskpro 2021.1.6 and fixed in Deskpro 2021.1.7 contains a cross-site scripting (XSS) vulner... |
| CVE-2021-36163 | CRITICAL | 9.8 | 2.8% | Sep 7, 2021 | In Apache Dubbo, users may choose to use the Hessian protocol. The Hessian protocol is implemented on top of HTTP and pa... |
| CVE-2021-36162 | HIGH | 8.8 | 2.0% | Sep 7, 2021 | Apache Dubbo supports various rules to support configuration override or traffic routing (called routing in Dubbo). Thes... |
| CVE-2021-34149 | MEDIUM | 6.5 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation on the Texas Instruments CC256XCQFN-EM does not properly handle the reception of co... |
| CVE-2021-34148 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properl... |
| CVE-2021-34147 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 does not properly handle... |
| CVE-2021-34146 | MEDIUM | 6.5 | 0.6% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress CYW920735Q60EVB does not properly handle the reception of continuous... |
| CVE-2021-34145 | MEDIUM | 5.3 | 0.5% | Sep 7, 2021 | The Bluetooth Classic implementation in the Cypress WICED BT stack through 2.9.0 for CYW20735B1 devices does not properl... |
| CVE-2021-34143 | MEDIUM | 6.5 | 0.7% | Sep 7, 2021 | The Bluetooth Classic implementation in the Zhuhai Jieli AC6366C_DEMO_V1.0 does not properly handle the reception of con... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now