2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-39782HIGH7.8In Telephony, there is a possible unauthorized modification of the PLMN SIM file due to a missing permission check. This...
CVE-2021-39781HIGH7.8In SmsController, there is a possible information disclosure due to a permissions bypass. This could lead to local escal...
CVE-2021-39780HIGH7.8In Traceur, there is a possible bypass of developer settings requirements for capturing system traces due to a missing p...
CVE-2021-39776HIGH7.8In NFC, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege ...
CVE-2021-39772HIGH8.8In Bluetooth, there is a possible way to access the a2dp audio control switch due to a missing permission check. This co...
CVE-2021-39771HIGH7.8In Settings, there is a possible way to misrepresent which app wants to add a wifi network due to improper input validat...
CVE-2021-39768HIGH7.8In Settings, there is a possible way to add an auto-connect WiFi network without the user's consent due to a missing per...
CVE-2021-39767HIGH7.8In miniadb, there is a possible way to get read/write access to recovery system properties due to an insecure default va...
CVE-2021-39764HIGH7.8In Settings, there is a possible way to display an incorrect app name due to improper input validation. This could lead ...
CVE-2021-39763HIGH7.8In Settings, there is a possible way to make the user enable WiFi due to improper input validation. This could lead to l...
CVE-2021-39762HIGH7.5In tremolo, there is a possible out of bounds read due to an integer overflow. This could lead to remote information dis...
CVE-2021-39759HIGH7.8In libstagefright, there is a possible out of bounds write due to an integer overflow. This could lead to local escalati...
CVE-2021-39758HIGH7.8In WindowManager, there is a possible way to start a foreground activity from the background due to a missing permission...
CVE-2021-39752HIGH7.8In Bubbles, there is a possible way to interfere with Bubbles due to a permissions bypass. This could lead to local esca...
CVE-2021-39750HIGH7.8In PackageManager, there is a possible way to change the splash screen theme of other apps due to a missing permission c...
CVE-2021-39749HIGH7.8In WindowManager, there is a possible way to start non-exported and protected activities due to a missing permission che...
CVE-2021-39746HIGH7.8In PermissionController, there is a possible way to delete some local files due to an unsafe PendingIntent. This could l...
CVE-2021-39743HIGH7.8In PackageManager, there is a possible way to update the last usage time of another package due to a missing permission ...
CVE-2021-39741HIGH7.8In Keymaster, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2021-23851HIGH7.2A specially crafted TCP/IP packet may cause the camera recovery image web interface to crash. It may also cause a buffer...
CVE-2021-23850HIGH7.2A specially crafted TCP/IP packet may cause a camera recovery image telnet interface to crash. It may also cause a buffe...
CVE-2021-1033HIGH7.8In createGeneralSlice of ConnectedDevicesSliceProvider.java.java, there is a possible permission bypass due to an unsafe...
CVE-2021-1000HIGH7.8In createBluetoothDeviceSlice of ConnectedDevicesSliceProvider.java, there is a possible permission bypass due to an uns...
CVE-2021-44082HIGH8.3textpattern 4.8.7 is vulnerable to Cross Site Scripting (XSS) via /textpattern/index.php,Body. A remote and unauthentica...
CVE-2021-43109HIGH7.5An SQL Injection vulnerability exits in PuneethReddyHC online-shopping-system as of 11/01/2021 via the p parameter in pr...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now