2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26699 | MEDIUM | 5.4 | 2.0% | Jul 22, 2021 | OX App Suite before 7.10.3-rev4 and 7.10.4 before 7.10.4-rev4 allows SSRF via a shared SVG document that is mishandled b... |
| CVE-2021-26698 | MEDIUM | 6.1 | 1.4% | Jul 22, 2021 | OX App Suite before 7.10.3-rev32 and 7.10.4 before 7.10.4-rev18 allows XSS via a code snippet (user-generated content) w... |
| CVE-2021-26232 | CRITICAL | 9.8 | 2.7% | Jul 22, 2021 | SQL injection vulnerability in SourceCodester Simple College Website v 1.0 allows remote attackers to execute arbitrary ... |
| CVE-2021-26231 | CRITICAL | 9.8 | 1.5% | Jul 22, 2021 | SQL injection vulnerability in SourceCodester Fantastic Blog CMS v 1.0 allows remote attackers to execute arbitrary SQL ... |
| CVE-2021-26230 | MEDIUM | 6.1 | 0.9% | Jul 22, 2021 | Cross-site scripting (XSS) vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attacke... |
| CVE-2021-26229 | CRITICAL | 9.8 | 1.5% | Jul 22, 2021 | SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute... |
| CVE-2021-26228 | CRITICAL | 9.8 | 1.7% | Jul 22, 2021 | SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute... |
| CVE-2021-26227 | MEDIUM | 6.1 | 0.9% | Jul 22, 2021 | Cross-site scripting (XSS) vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attacke... |
| CVE-2021-34700 | MEDIUM | 5.5 | 0.3% | Jul 22, 2021 | A vulnerability in the CLI interface of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to re... |
| CVE-2021-26765 | CRITICAL | 9.8 | 2.9% | Jul 22, 2021 | SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL sta... |
| CVE-2021-26764 | HIGH | 8.8 | 2.5% | Jul 22, 2021 | SQL injection vulnerability in PHPGurukul Student Record System v 4.0 allows remote attackers to execute arbitrary SQL s... |
| CVE-2021-26762 | HIGH | 8.8 | 2.3% | Jul 22, 2021 | SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL sta... |
| CVE-2021-23897 | — | — | — | Jul 22, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ca... |
| CVE-2021-1618 | HIGH | 7.2 | 2.7% | Jul 22, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an auth... |
| CVE-2021-1617 | MEDIUM | 6.5 | 1.5% | Jul 22, 2021 | Multiple vulnerabilities in the web-based management interface of Cisco Intersight Virtual Appliance could allow an auth... |
| CVE-2021-1614 | MEDIUM | 5.3 | 1.2% | Jul 22, 2021 | A vulnerability in the Multiprotocol Label Switching (MPLS) packet handling function of Cisco SD-WAN Software could allo... |
| CVE-2021-1601 | HIGH | 8.3 | 0.4% | Jul 22, 2021 | Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce... |
| CVE-2021-1600 | HIGH | 8.3 | 0.4% | Jul 22, 2021 | Multiple vulnerabilities in Cisco Intersight Virtual Appliance could allow an unauthenticated, adjacent attacker to acce... |
| CVE-2021-1599 | MEDIUM | 5.4 | 0.8% | Jul 22, 2021 | A vulnerability in the web-based management interface of Cisco Unified Customer Voice Portal (CVP) could allow an authen... |
| CVE-2021-1518 | HIGH | 8.8 | 1.9% | Jul 22, 2021 | A vulnerability in the REST API of Cisco Firepower Device Manager (FDM) On-Box Software could allow an authenticated, re... |
| CVE-2021-34431 | MEDIUM | 6.5 | 1.1% | Jul 22, 2021 | In Eclipse Mosquitto version 1.6 to 2.0.10, if an authenticated client that had connected with MQTT v5 sent a crafted CO... |
| CVE-2021-29149 | MEDIUM | 6.2 | 0.2% | Jul 22, 2021 | A local bypass security restrictions vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch Ser... |
| CVE-2021-29148 | MEDIUM | 6.1 | 0.6% | Jul 22, 2021 | A local cross-site scripting (XSS) vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch Serie... |
| CVE-2021-29143 | HIGH | 7.2 | 2.6% | Jul 22, 2021 | A remote execution of arbitrary commands vulnerability was discovered in Aruba CX 6200F Switch Series, Aruba 6300 Switch... |
| CVE-2021-22001 | HIGH | 7.5 | 1.0% | Jul 22, 2021 | In UAA versions prior to 75.3.0, sensitive information like relaying secret of the provider was revealed in response whe... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now