2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40996 | CRITICAL | 9.8 | 1.7% | Oct 15, 2021 | A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPass Poli... |
| CVE-2021-40720 | CRITICAL | 9.8 | 9.2% | Oct 15, 2021 | Ops CLI version 2.0.4 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrar... |
| CVE-2021-38432 | CRITICAL | 9.8 | 1.8% | Oct 15, 2021 | FATEK Automation Communication Server Versions 1.13 and prior lacks proper validation of user-supplied data, which could... |
| CVE-2021-3881 | CRITICAL | 9.8 | 1.1% | Oct 15, 2021 | libmobi is vulnerable to Out-of-bounds Read |
| CVE-2021-3878 | CRITICAL | 9.8 | 1.8% | Oct 15, 2021 | corenlp is vulnerable to Improper Restriction of XML External Entity Reference |
| CVE-2021-37736 | CRITICAL | 9.8 | 1.5% | Oct 15, 2021 | A remote authentication bypass vulnerability was discovered in Aruba ClearPass Policy Manager version(s): ClearPass Poli... |
| CVE-2021-42342 | CRITICAL | 9.8 | 59.5% | Oct 14, 2021 | An issue was discovered in GoAhead 4.x and 5.x before 5.1.5. In the file upload filter, user form variables can be passe... |
| CVE-2021-41075 | CRITICAL | 9.8 | 3.3% | Oct 13, 2021 | The NetFlow Analyzer in Zoho ManageEngine OpManger before 125455 is vulnerable to SQL Injection in the Attacks Module AP... |
| CVE-2021-40493 | CRITICAL | 9.8 | 50.2% | Oct 13, 2021 | Zoho ManageEngine OpManager before 125437 is vulnerable to SQL Injection in the support diagnostics module. This occurs ... |
| CVE-2021-42224 | CRITICAL | 9.8 | 2.2% | Oct 13, 2021 | SQL Injection vulnerability exists in IFSC Code Finder Project 1.0 via the searchifsccode POST parameter in /search.php. |
| CVE-2021-40842 | CRITICAL | 9.8 | 1.0% | Oct 13, 2021 | Proofpoint Insider Threat Management Server contains a SQL injection vulnerability in the Web Console. The vulnerability... |
| CVE-2021-35498 | CRITICAL | 9.8 | 1.3% | Oct 13, 2021 | The TIBCO EBX Web Server component of TIBCO Software Inc.'s TIBCO EBX, TIBCO EBX, TIBCO EBX, and TIBCO Product and Servi... |
| CVE-2021-20125 | CRITICAL | 9.8 | 3.8% | Oct 13, 2021 | An arbitrary file upload and directory traversal vulnerability exists in the file upload functionality of DownloadFileSe... |
| CVE-2021-26427 | CRITICAL | 9 | 0.9% | Oct 13, 2021 | Microsoft Exchange Server Remote Code Execution Vulnerability |
| CVE-2021-3323 | CRITICAL | 9.8 | 0.9% | Oct 12, 2021 | Integer Underflow in 6LoWPAN IPHC Header Uncompression in Zephyr. Zephyr versions >= >=2.4.0 contain Integer Underflow (... |
| CVE-2021-42325 | CRITICAL | 9.8 | 11.8% | Oct 12, 2021 | Froxlor through 0.10.29.1 allows SQL injection in Database/Manager/DbManagerMySQL.php via a custom DB name. |
| CVE-2021-29644 | CRITICAL | 9.8 | 2.5% | Oct 12, 2021 | Hitachi JP1/IT Desktop Management 2 Agent 9 through 12 contains a remote code execution vulnerability because of an Inte... |
| CVE-2021-40618 | CRITICAL | 9.8 | 1.4% | Oct 12, 2021 | An SQL Injection vulnerability exists in openSIS Classic 8.0 via the 1) ADDR_CONT_USRN, 2) ADDR_CONT_PSWD, 3) SECN_CONT_... |
| CVE-2021-40499 | CRITICAL | 9.8 | 1.1% | Oct 12, 2021 | Client-side printing services SAP Cloud Print Manager and SAPSprint for SAP NetWeaver Application Server for ABAP - vers... |
| CVE-2021-38180 | CRITICAL | 9.8 | 2.0% | Oct 12, 2021 | SAP Business One - version 10.0, allows an attacker to inject formulas when exporting data to Excel (CSV injection) due ... |
| CVE-2021-37726 | CRITICAL | 9.8 | 2.3% | Oct 12, 2021 | A remote buffer overflow vulnerability was discovered in HPE Aruba Instant (IAP) version(s): Aruba Instant 8.7.x.x: 8.7.... |
| CVE-2021-38458 | CRITICAL | 9.8 | 1.7% | Oct 12, 2021 | A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacke... |
| CVE-2021-38456 | CRITICAL | 9.8 | 1.1% | Oct 12, 2021 | A use of hard-coded password vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allo... |
| CVE-2021-38454 | CRITICAL | 10 | 15.8% | Oct 12, 2021 | A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacke... |
| CVE-2021-38452 | CRITICAL | 9.1 | 1.6% | Oct 12, 2021 | A path traversal vulnerability in the Moxa MXview Network Management software Versions 3.x to 3.2.2 may allow an attacke... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now