2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-35312 | HIGH | 7.8 | 1.1% | Aug 6, 2021 | A vulnerability was found in CIR 2000 / Gestionale Amica Prodigy v1.7. The Amica Prodigy's executable "RemoteBackup.Serv... |
| CVE-2021-36795 | HIGH | 7.8 | 0.2% | Aug 6, 2021 | A permission issue in the Cohesity Linux agent may allow privilege escalation in version 6.5.1b to 6.5.1d-hotfix10, 6.6.... |
| CVE-2021-20598 | MEDIUM | 5.3 | 1.5% | Aug 6, 2021 | Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric MELSEC iQ-R series CPU modules (R08/16... |
| CVE-2021-20597 | CRITICAL | 9.1 | 2.2% | Aug 6, 2021 | Insufficiently Protected Credentials vulnerability in Mitsubishi Electric MELSEC iQ-R series Safety CPU modules R08/16/3... |
| CVE-2021-20594 | HIGH | 7.5 | 2.4% | Aug 6, 2021 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Mitsubishi Electric MELSEC iQ-R series Safet... |
| CVE-2021-36455 | HIGH | 8.8 | 1.1% | Aug 6, 2021 | SQL Injection vulnerability in Naviwebs Navigate CMS 2.9 via the quicksearch parameter in \lib\packages\comments\comment... |
| CVE-2021-36454 | MEDIUM | 5.4 | 0.6% | Aug 6, 2021 | Cross Site Scripting (XSS) vulnerability in Naviwebs Navigate Cms 2.9 via the navigate-quickse parameter to 1) backups\b... |
| CVE-2021-38137 | HIGH | 8.1 | 0.7% | Aug 6, 2021 | Corero SecureWatch Managed Services 9.7.2.0020 does not correctly check swa-monitor and cns-monitor user’s privileges, a... |
| CVE-2021-38136 | MEDIUM | 6.5 | 1.2% | Aug 6, 2021 | Corero SecureWatch Managed Services 9.7.2.0020 is affected by a Path Traversal vulnerability via the snap_file parameter... |
| CVE-2021-26999 | MEDIUM | 4.3 | 0.6% | Aug 6, 2021 | NetApp Cloud Manager versions prior to 3.9.9 log sensitive information when an Active Directory connection fails. The lo... |
| CVE-2021-26998 | MEDIUM | 4.3 | 0.6% | Aug 6, 2021 | NetApp Cloud Manager versions prior to 3.9.9 log sensitive information that is available only to authenticated users. Cu... |
| CVE-2021-26606 | CRITICAL | 9.8 | 2.4% | Aug 6, 2021 | A vulnerability in PKI Security Solution of Dream Security could allow arbitrary command execution. This vulnerability i... |
| CVE-2021-37554 | MEDIUM | 4.3 | 0.9% | Aug 6, 2021 | In JetBrains YouTrack before 2021.3.21051, a user could see boards without having corresponding permissions. |
| CVE-2021-37553 | HIGH | 7.5 | 1.5% | Aug 6, 2021 | In JetBrains YouTrack before 2021.2.16363, an insecure PRNG was used. |
| CVE-2021-37552 | MEDIUM | 5.4 | 0.6% | Aug 6, 2021 | In JetBrains YouTrack before 2021.2.17925, stored XSS was possible. |
| CVE-2021-37551 | MEDIUM | 5.3 | 0.7% | Aug 6, 2021 | In JetBrains YouTrack before 2021.2.16363, system user passwords were hashed with SHA-256. |
| CVE-2021-37550 | HIGH | 7.5 | 1.1% | Aug 6, 2021 | In JetBrains YouTrack before 2021.2.16363, time-unsafe comparisons were used. |
| CVE-2021-37549 | CRITICAL | 9.1 | 1.3% | Aug 6, 2021 | In JetBrains YouTrack before 2021.1.11111, sandboxing in workflows was insufficient. |
| CVE-2021-37548 | HIGH | 7.5 | 0.6% | Aug 6, 2021 | In JetBrains TeamCity before 2021.1, passwords in cleartext sometimes could be stored in VCS. |
| CVE-2021-37547 | MEDIUM | 5.3 | 0.7% | Aug 6, 2021 | In JetBrains TeamCity before 2020.2.4, insufficient checks during file uploading were made. |
| CVE-2021-37546 | MEDIUM | 5.3 | 0.5% | Aug 6, 2021 | In JetBrains TeamCity before 2021.1, an insecure key generation mechanism for encrypted properties was used. |
| CVE-2021-37545 | HIGH | 7.5 | 0.9% | Aug 6, 2021 | In JetBrains TeamCity before 2021.1.1, insufficient authentication checks for agent requests were made. |
| CVE-2021-37544 | CRITICAL | 9.8 | 1.2% | Aug 6, 2021 | In JetBrains TeamCity before 2020.2.4, there was an insecure deserialization. |
| CVE-2021-37543 | HIGH | 8.8 | 1.4% | Aug 6, 2021 | In JetBrains RubyMine before 2021.1.1, code execution without user confirmation was possible for untrusted projects. |
| CVE-2021-37542 | MEDIUM | 6.1 | 0.6% | Aug 6, 2021 | In JetBrains TeamCity before 2020.2.3, XSS was possible. |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now