2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-23266MEDIUM4.3An anonymous user can craft a URL with text that ends up in the log viewer as is. The text can then include textual mess...
CVE-2021-23265MEDIUM4.3A logged-in and authenticated user with a Reviewer Role may lock a content item.
CVE-2021-46785MEDIUM5.3The Property module has a vulnerability in permission control.This vulnerability can be exploited to obtain the unique d...
CVE-2021-27773MEDIUM4.3This vulnerability allows users to execute a clickjacking attack in the meeting's chat.
CVE-2021-27772MEDIUM6.5Users are able to read group conversations without actively taking part in them. Next to one to one conversations, users...
CVE-2021-27769MEDIUM5.3Information leakage occurs when a website reveals information that could aid an attacker to further exploit the system. ...
CVE-2021-27768MEDIUM5.9Using the ability to perform a Man-in-the-Middle (MITM) attack, which indicates a lack of hostname verification, sensiti...
CVE-2021-26368MEDIUM4.4Insufficient check of the process type in Trusted OS (TOS) may allow an attacker with privileges to enable a lesser priv...
CVE-2021-26363MEDIUM4.4A malicious or compromised UApp or ABL could potentially change the value that the ASP uses for its reserved DRAM, to on...
CVE-2021-22531MEDIUM6.1A bug exist in the input parameter of Access Manager that allows supply of invalid character to trigger cross-site scrip...
CVE-2021-26361MEDIUM5.5A malicious or compromised User Application (UApp) or AGESA Boot Loader (ABL) could be used by an attacker to exfiltrate...
CVE-2021-26351MEDIUM5.5Insufficient DRAM address validation in System Management Unit (SMU) may result in a DMA (Direct Memory Access) read/wri...
CVE-2021-33149MEDIUM5.5Observable behavioral discrepancy in some Intel(R) Processors may allow an authorized user to potentially enable informa...
CVE-2021-33135MEDIUM5.5Uncontrolled resource consumption in the Linux kernel drivers for Intel(R) SGX may allow an authenticated user to potent...
CVE-2021-33130MEDIUM4.6Insecure default variable initialization of Intel(R) RealSense(TM) ID Solution F450 before version 2.6.0.74 may allow an...
CVE-2021-33124MEDIUM6.7Out-of-bounds write in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user to po...
CVE-2021-33117MEDIUM5.5Improper access control for some 3rd Generation Intel(R) Xeon(R) Scalable Processors before BIOS version MR7, may allow ...
CVE-2021-33108MEDIUM6.7Improper input validation in the Intel(R) In-Band Manageability software before version 2.13.0 may allow a privileged us...
CVE-2021-33103MEDIUM6.7Unintended intermediary in the BIOS authenticated code module for some Intel(R) Processors may allow a privileged user t...
CVE-2021-33083MEDIUM4.4Improper authentication in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD, Intel(R) Optane(TM) SSD DC and Intel...
CVE-2021-33082MEDIUM4.6Sensitive information in resource not removed before reuse in firmware for some Intel(R) SSD and Intel(R) Optane(TM) SSD...
CVE-2021-33080MEDIUM6.8Exposure of sensitive system information due to uncleared debug information in firmware for some Intel(R) SSD DC, Intel(...
CVE-2021-33078MEDIUM4.7Race condition within a thread in firmware for some Intel(R) Optane(TM) SSD and Intel(R) SSD DC Products may allow a pri...
CVE-2021-33077MEDIUM6.8Insufficient control flow management in firmware for some Intel(R) SSD, Intel(R) Optane(TM) SSD and Intel(R) SSD DC Prod...
CVE-2021-33075MEDIUM4.7Race condition in firmware for some Intel(R) Optane(TM) SSD, Intel(R) Optane(TM) SSD DC and Intel(R) SSD DC Products may...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now