2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-30062HIGH7.5On Schneider Electric ConneXium Tofino OPCLSM TCSEFM0000 before 03.23 and Belden Tofino Xenon Security Appliance, crafte...
CVE-2021-3847HIGH7.8An unauthorized access to the execution of the setuid file with capabilities flaw in the Linux kernel OverlayFS subsyste...
CVE-2021-3461HIGH7.1A flaw was found in keycloak where keycloak may fail to logout user session if the logout request comes from external SA...
CVE-2021-39908HIGH7.5In all versions of GitLab CE/EE starting from 0.8.0 before 14.2.6, all versions starting from 14.3 before 14.3.4, and al...
CVE-2021-33657HIGH8.8There is a heap overflow problem in video/SDL_pixels.c in SDL (Simple DirectMedia Layer) 2.x to 2.0.18 versions. By craf...
CVE-2021-33024HIGH7.5Philips Vue PACS versions 12.2.x.x and prior transmits or stores authentication credentials, but it uses an insecure met...
CVE-2021-33022HIGH7.5Philips Vue PACS versions 12.2.x.x and prior transmits sensitive or security-critical data in cleartext in a communicati...
CVE-2021-33020HIGH7.5Philips Vue PACS versions 12.2.x.x and prior uses a cryptographic key or password past its expiration date, which dimini...
CVE-2021-33018HIGH7.5The use of a broken or risky cryptographic algorithm in Philips Vue PACS versions 12.2.x.x and prior is an unnecessary r...
CVE-2021-32970HIGH7.5Data can be copied without validation in the built-in web server in Moxa NPort IAW5000A-I/O series firmware version 2.2 ...
CVE-2021-32968HIGH7.5Two buffer overflows in the built-in web server in Moxa NPort IAW5000A-I/O Series firmware version 2.2 or earlier may al...
CVE-2021-32961HIGH7.5A getfile function in MDT AutoSave versions prior to v6.02.06 enables a user to supply an optional parameter, resulting ...
CVE-2021-32960HIGH8.8Rockwell Automation FactoryTalk Services Platform v6.11 and earlier, if FactoryTalk Security is enabled and deployed con...
CVE-2021-32957HIGH7.5A function in MDT AutoSave versions prior to v6.02.06 is used to retrieve system information for a specific process, and...
CVE-2021-32949HIGH7.5An attacker could utilize a function in MDT AutoSave versions prior to v6.02.06 that permits changing a designated path ...
CVE-2021-32945HIGH7.5An attacker could decipher the encryption and gain access to MDT AutoSave versions prior to v6.02.06.
CVE-2021-32937HIGH7.5An attacker can gain knowledge of a session temporary working folder where the getfile and putfile commands are used in ...
CVE-2021-28504HIGH7.5On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which m...
CVE-2021-26624HIGH8.8An local privilege escalation vulnerability due to a "runasroot" command in eScan Anti-Virus. This vulnerability is due ...
CVE-2021-22277HIGH7.5Improper Input Validation vulnerability in ABB 800xA, Control Software for AC 800M, Control Builder Safe, Compact Produc...
CVE-2021-35115HIGH7.8Improper handling of multiple session supported by PVM backend can lead to use after free in Snapdragon Auto, Snapdragon...
CVE-2021-35110HIGH8.8Possible buffer overflow to improper validation of hash segment of file while allocating memory in Snapdragon Connectivi...
CVE-2021-35106HIGH7.8Possible out of bound read due to improper length calculation of WMI message. in Snapdragon Auto, Snapdragon Compute, Sn...
CVE-2021-35105HIGH7.8Possible out of bounds access due to improper input validation during graphics profiling in Snapdragon Auto, Snapdragon ...
CVE-2021-35103HIGH7.8Possible out of bound write due to improper validation of number of timer values received from firmware while syncing ti...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now