2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:CRITICALClear
CVE IDSeverityCVSSDescription
CVE-2021-42090CRITICAL9.8An issue was discovered in Zammad before 4.1.1. The Form functionality allows remote code execution because deserializat...
CVE-2021-42094CRITICAL9.8An issue was discovered in Zammad before 4.1.1. Command Injection can occur via custom Packages.
CVE-2021-42071CRITICAL9.8In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharac...
CVE-2021-42013CRITICAL9.8It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path...
CVE-2021-3833CRITICAL9.8Integria IMS login check uses a loose comparator ("==") to compare the MD5 hash of the password provided by the user and...
CVE-2021-37931CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37930CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37929CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37928CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37926CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37924CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37923CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37921CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37920CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37919CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37918CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu...
CVE-2021-37762CRITICAL9.8Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file overwrite leading to remote code execut...
CVE-2021-3832CRITICAL9.8Integria IMS in its 5.0.92 version is vulnerable to a Remote Code Execution attack through file uploading. An unauthenti...
CVE-2021-22958CRITICAL9.8A Server-Side Request Forgery vulnerability was found in concrete5 < 8.5.5 that allowed a decimal notation encoded IP ad...
CVE-2021-22930CRITICAL9.8Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to a use after free attack where an attacker might be able to ...
CVE-2021-32172CRITICAL9.8Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the...
CVE-2021-38923CRITICAL9.1IBM PowerVM Hypervisor FW1010 could allow a privileged user to gain access to another VM due to assigning duplicate WWPN...
CVE-2021-29908CRITICAL9.8The IBM TS7700 Management Interface is vulnerable to unauthenticated access. By accessing a specially-crafted URL, an at...
CVE-2021-29903CRITICAL9.8IBM Sterling B2B Integrator Standard Edition 5.2.6.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker c...
CVE-2021-29798CRITICAL9.8IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker c...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now