2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42090 | CRITICAL | 9.8 | 2.3% | Oct 7, 2021 | An issue was discovered in Zammad before 4.1.1. The Form functionality allows remote code execution because deserializat... |
| CVE-2021-42094 | CRITICAL | 9.8 | 1.9% | Oct 7, 2021 | An issue was discovered in Zammad before 4.1.1. Command Injection can occur via custom Packages. |
| CVE-2021-42071 | CRITICAL | 9.8 | 69.9% | Oct 7, 2021 | In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharac... |
| CVE-2021-42013 | CRITICAL | 9.8 | 100.0% | Oct 7, 2021 | It was found that the fix for CVE-2021-41773 in Apache HTTP Server 2.4.50 was insufficient. An attacker could use a path... |
| CVE-2021-3833 | CRITICAL | 9.8 | 1.1% | Oct 7, 2021 | Integria IMS login check uses a loose comparator ("==") to compare the MD5 hash of the password provided by the user and... |
| CVE-2021-37931 | CRITICAL | 9.8 | 9.2% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37930 | CRITICAL | 9.8 | 9.2% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37929 | CRITICAL | 9.8 | 9.2% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37928 | CRITICAL | 9.8 | 9.2% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37926 | CRITICAL | 9.8 | 73.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37924 | CRITICAL | 9.8 | 10.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37923 | CRITICAL | 9.8 | 10.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37921 | CRITICAL | 9.8 | 10.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37920 | CRITICAL | 9.8 | 10.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37919 | CRITICAL | 9.8 | 10.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37918 | CRITICAL | 9.8 | 73.6% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file upload which leads to remote code execu... |
| CVE-2021-37762 | CRITICAL | 9.8 | 7.8% | Oct 7, 2021 | Zoho ManageEngine ADManager Plus version 7110 and prior allows unrestricted file overwrite leading to remote code execut... |
| CVE-2021-3832 | CRITICAL | 9.8 | 2.2% | Oct 7, 2021 | Integria IMS in its 5.0.92 version is vulnerable to a Remote Code Execution attack through file uploading. An unauthenti... |
| CVE-2021-22958 | CRITICAL | 9.8 | 1.2% | Oct 7, 2021 | A Server-Side Request Forgery vulnerability was found in concrete5 < 8.5.5 that allowed a decimal notation encoded IP ad... |
| CVE-2021-22930 | CRITICAL | 9.8 | 37.3% | Oct 7, 2021 | Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to a use after free attack where an attacker might be able to ... |
| CVE-2021-32172 | CRITICAL | 9.8 | 66.4% | Oct 7, 2021 | Maian Cart v3.8 contains a preauthorization remote code execution (RCE) exploit via a broken access control issue in the... |
| CVE-2021-38923 | CRITICAL | 9.1 | 1.0% | Oct 6, 2021 | IBM PowerVM Hypervisor FW1010 could allow a privileged user to gain access to another VM due to assigning duplicate WWPN... |
| CVE-2021-29908 | CRITICAL | 9.8 | 2.0% | Oct 6, 2021 | The IBM TS7700 Management Interface is vulnerable to unauthenticated access. By accessing a specially-crafted URL, an at... |
| CVE-2021-29903 | CRITICAL | 9.8 | 1.1% | Oct 6, 2021 | IBM Sterling B2B Integrator Standard Edition 5.2.6.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker c... |
| CVE-2021-29798 | CRITICAL | 9.8 | 1.1% | Oct 6, 2021 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.1.0 is vulnerable to SQL injection. A remote attacker c... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now