2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22419 | MEDIUM | 5.5 | 0.1% | Aug 3, 2021 | A component of the HarmonyOS has a Insufficient Verification of Data Authenticity vulnerability. Local attackers may exp... |
| CVE-2021-22418 | HIGH | 7.8 | 0.2% | Aug 3, 2021 | A component of the HarmonyOS has a Integer Overflow or Wraparound vulnerability. Local attackers may exploit this vulner... |
| CVE-2021-22417 | MEDIUM | 5.5 | 0.1% | Aug 3, 2021 | A component of the HarmonyOS has a Data Processing Errors vulnerability. Local attackers may exploit this vulnerability ... |
| CVE-2021-22416 | HIGH | 7.8 | 0.2% | Aug 3, 2021 | A component of the HarmonyOS has a Data Processing Errors vulnerability. Local attackers may exploit this vulnerability ... |
| CVE-2021-32814 | HIGH | 8.1 | 2.1% | Aug 3, 2021 | Skytable is a NoSQL database with automated snapshots and TLS. Versions prior to 0.5.1 are vulnerable to a a directory t... |
| CVE-2021-32017 | HIGH | 7.7 | 0.9% | Aug 3, 2021 | An issue was discovered in JUMP AMS 3.6.0.04.009-2487. A JUMP SOAP endpoint permitted the listing of the content of the ... |
| CVE-2021-37558 | CRITICAL | 9.8 | 2.1% | Aug 3, 2021 | A SQL injection vulnerability in a MediaWiki script in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote unau... |
| CVE-2021-37557 | HIGH | 8.8 | 29.4% | Aug 3, 2021 | A SQL injection vulnerability in image generation in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authen... |
| CVE-2021-37556 | HIGH | 8.8 | 29.4% | Aug 3, 2021 | A SQL injection vulnerability in reporting export in Centreon before 20.04.14, 20.10.8, and 21.04.2 allows remote authen... |
| CVE-2021-36763 | HIGH | 7.5 | 1.0% | Aug 3, 2021 | In CODESYS V3 web server before 3.5.17.10, files or directories are accessible to External Parties. |
| CVE-2021-33486 | HIGH | 7.5 | 1.0% | Aug 3, 2021 | All versions of the CODESYS V3 Runtime Toolkit for VxWorks from version V3.5.8.0 and before version V3.5.17.10 have Impr... |
| CVE-2021-33485 | CRITICAL | 9.8 | 1.1% | Aug 3, 2021 | CODESYS Control Runtime system before 3.5.17.10 has a Heap-based Buffer Overflow. |
| CVE-2021-31504 | HIGH | 7.8 | 1.4% | Aug 3, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto... |
| CVE-2021-31503 | HIGH | 7.8 | 1.4% | Aug 3, 2021 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of OpenText Brava! Deskto... |
| CVE-2021-21581 | MEDIUM | 6.1 | 0.9% | Aug 3, 2021 | Dell EMC iDRAC9 versions prior to 5.00.00.00 contain a cross-site scripting vulnerability. A remote attacker could poten... |
| CVE-2021-21580 | MEDIUM | 4.3 | 0.8% | Aug 3, 2021 | Dell EMC iDRAC8 versions prior to 2.80.80.80 & Dell EMC iDRAC9 versions prior to 5.00.00.00 contain a Content spoofing /... |
| CVE-2021-21579 | MEDIUM | 6.1 | 0.9% | Aug 3, 2021 | Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker m... |
| CVE-2021-21578 | MEDIUM | 6.1 | 0.9% | Aug 3, 2021 | Dell EMC iDRAC9 versions prior to 4.40.40.00 contain an open redirect vulnerability. A remote unauthenticated attacker m... |
| CVE-2021-21577 | MEDIUM | 6.1 | 0.9% | Aug 3, 2021 | Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based cross-site scripting vulnerability. A remote attacker c... |
| CVE-2021-21576 | MEDIUM | 6.1 | 0.9% | Aug 3, 2021 | Dell EMC iDRAC9 versions prior to 4.40.40.00 contain a DOM-based cross-site scripting vulnerability. A remote attacker c... |
| CVE-2021-36157 | MEDIUM | 5.3 | 1.4% | Aug 3, 2021 | An issue was discovered in Grafana Cortex through 1.9.0. The header value X-Scope-OrgID is used to construct file paths ... |
| CVE-2021-36156 | MEDIUM | 5.3 | 1.5% | Aug 3, 2021 | An issue was discovered in Grafana Loki through 2.2.1. The header value X-Scope-OrgID is used to construct file paths fo... |
| CVE-2021-32772 | HIGH | 8.8 | 2.4% | Aug 3, 2021 | Poddycast is a podcast app made with Electron. Prior to version 0.8.1, an attacker can create a podcast or episode with ... |
| CVE-2021-31630 | HIGH | 8.8 | 27.1% | Aug 3, 2021 | Command Injection in Open PLC Webserver v3 allows remote attackers to execute arbitrary code via the "Hardware Layer Cod... |
| CVE-2021-27954 | HIGH | 8.2 | 0.9% | Aug 3, 2021 | A heap-based buffer overflow vulnerability exists on the ecobee3 lite 4.5.81.200 device in the HKProcessConfig function ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now