2021 CVE Vulnerabilities

23,461 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-29294HIGH7.5Null Pointer Dereference vulnerability exists in D-Link DSL-2740R UK_1.01, which could let a remove malicious user cause...
CVE-2021-28846MEDIUM6.5A Format String vulnerablity exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and TE...
CVE-2021-28845HIGH7.5Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B...
CVE-2021-38387HIGH7.5In Contiki 3.0, a Telnet server that silently quits (before disconnection with clients) leads to connected clients enter...
CVE-2021-38386HIGH7.5In Contiki 3.0, a buffer overflow in the Telnet service allows remote attackers to cause a denial of service because the...
CVE-2021-28844HIGH7.5Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B...
CVE-2021-28843HIGH7.5Null Pointer Dereference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B...
CVE-2021-28842HIGH7.5Null Pointer Deference vulnerability exists in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03...
CVE-2021-28841HIGH7.5Null Pointer Dereference vulnerability in TRENDnet TEW-755AP 1.11B03, TEW-755AP2KAC 1.11B03, TEW-821DAP2KAC 1.11B03, and...
CVE-2021-21601HIGH7.8Dell EMC Data Protection Search, 19.4 and prior, and IDPA, 2.6.1 and prior, contain an Information Exposure in Log File ...
CVE-2021-21600MEDIUM6.5Dell EMC NetWorker, 19.4 or older, contain an uncontrolled resource consumption flaw in its API service. An authorized A...
CVE-2021-21598LOW3.9Dell Wyse ThinOS, versions 9.0, 9.1, and 9.1 MR1, contain a Sensitive Information Disclosure Vulnerability. An authentic...
CVE-2021-21597LOW3.9Dell Wyse ThinOS, version 9.0, contains a Sensitive Information Disclosure Vulnerability. An authenticated malicious use...
CVE-2021-21567HIGH7.8Dell PowerScale OneFS 9.1.0.x contains an improper privilege management vulnerability. It may allow an authenticated use...
CVE-2021-38384CRITICAL9.8Serverless Offline 8.0.0 returns a 403 HTTP status code for a route that has a trailing / character, which might cause a...
CVE-2021-38383CRITICAL9.8OwnTone (aka owntone-server) through 28.1 has a use-after-free in net_bind() in misc.c.
CVE-2021-38382MEDIUM6.5Live555 through 1.08 does not handle Matroska and Ogg files properly. Sending two successive RTSP SETUP commands for the...
CVE-2021-38381MEDIUM6.5Live555 through 1.08 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same...
CVE-2021-38380HIGH7.5Live555 through 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer ove...
CVE-2021-38140CRITICAL9.8The set_user extension module before 2.0.1 for PostgreSQL allows a potential privilege escalation using RESET SESSION AU...
CVE-2021-28840HIGH7.5Null Pointer Dereference vulnerability exists in D-Link DAP-2310 2.07.RC031, DAP-2330 1.07.RC028, DAP-2360 2.07.RC043, D...
CVE-2021-28839HIGH7.5Null Pointer Dereference vulnerability exists in D-Link DAP-2310 2.07.RC031, DAP-2330 1.07.RC028, DAP-2360 2.07.RC043, D...
CVE-2021-28838HIGH7.5Null pointer dereference vulnerability in D-Link DAP-2310 2,10RC039, DAP-2330 1.10RC036 BETA, DAP-2360 2.10RC055, DAP-25...
CVE-2021-3692MEDIUM5.3yii2 is vulnerable to Use of Predictable Algorithm in Random Number Generator
CVE-2021-37367HIGH7.8CTparental before 4.45.07 is affected by a code execution vulnerability in the CTparental admin panel. Because The file ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now