2021 CVE Vulnerabilities
23,461 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-30110 | HIGH | 7.5 | 2.0% | Jul 22, 2021 | dttray.exe in Greyware Automation Products Inc Domain Time II before 5.2.b.20210331 allows remote attackers to execute a... |
| CVE-2021-35522 | CRITICAL | 9.8 | 3.7% | Jul 22, 2021 | A Buffer Overflow in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2, Sigma de... |
| CVE-2021-35521 | MEDIUM | 5.9 | 1.4% | Jul 22, 2021 | A path traversal in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows rem... |
| CVE-2021-35520 | MEDIUM | 6.2 | 0.3% | Jul 22, 2021 | A Buffer Overflow in Thrift command handlers in IDEMIA Morpho Wave Compact and VisionPass devices before 2.6.2 allows ph... |
| CVE-2021-30486 | HIGH | 8.8 | 1.0% | Jul 22, 2021 | SysAid 20.3.64 b14 is affected by Blind and Stacker SQL injection via AssetManagementChart.jsp (GET computerID), AssetMa... |
| CVE-2021-30049 | MEDIUM | 6.1 | 2.5% | Jul 22, 2021 | SysAid 20.3.64 b14 is affected by Cross Site Scripting (XSS) via a /KeepAlive.jsp?stamp= URI. |
| CVE-2021-22523 | HIGH | 7.6 | 0.8% | Jul 22, 2021 | XML External Entity vulnerability in Micro Focus Verastream Host Integrator, affecting version 7.8 Update 1 and earlier ... |
| CVE-2021-22522 | HIGH | 7.1 | 0.6% | Jul 22, 2021 | Reflected Cross-Site Scripting vulnerability in Micro Focus Verastream Host Integrator, affecting version version 7.8 Up... |
| CVE-2021-20596 | HIGH | 7.5 | 2.2% | Jul 22, 2021 | NULL Pointer Dereference in MELSEC-F Series FX3U-ENET firmware version 1.14 and prior, FX3U-ENET-L firmware version 1.14... |
| CVE-2021-28131 | HIGH | 7.5 | 3.3% | Jul 22, 2021 | Impala sessions use a 16 byte secret to verify that the session is not being hijacked by another user. However, these se... |
| CVE-2021-36934 | HIGH | 7.8 | 67.3% | Jul 22, 2021 | An elevation of privilege vulnerability exists because of overly permissive Access Control Lists (ACLs) on multiple syst... |
| CVE-2021-1096 | MEDIUM | 5.5 | 0.3% | Jul 22, 2021 | NVIDIA Windows GPU Display Driver for Windows contains a vulnerability in the NVIDIA kernel mode layer (nvlddmkm.sys) ha... |
| CVE-2021-1095 | MEDIUM | 5.5 | 0.4% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler... |
| CVE-2021-1094 | MEDIUM | 6.1 | 0.4% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler... |
| CVE-2021-1093 | MEDIUM | 5.5 | 0.4% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in firmware where the driver contains an assert... |
| CVE-2021-1092 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susce... |
| CVE-2021-1091 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display driver for Windows contains a vulnerability where an unprivileged user can create a file hard link th... |
| CVE-2021-1090 | HIGH | 7.1 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows and Linux contains a vulnerability in the kernel mode layer (nvlddmkm.sys) handler... |
| CVE-2021-1089 | HIGH | 7.8 | 0.3% | Jul 22, 2021 | NVIDIA GPU Display Driver for Windows contains a vulnerability in nvidia-smi where an uncontrolled DLL loading path may ... |
| CVE-2021-37220 | MEDIUM | 5.5 | 1.3% | Jul 21, 2021 | MuPDF through 1.18.1 has an out-of-bounds write because the cached color converter does not properly consider the maximu... |
| CVE-2021-32776 | HIGH | 8.8 | 0.4% | Jul 21, 2021 | Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.4, CSRF tokens can be reused by a malic... |
| CVE-2021-32775 | MEDIUM | 6.5 | 0.8% | Jul 21, 2021 | Combodo iTop is a web based IT Service Management tool. In versions prior to 2.7.4, a non admin user can get access to m... |
| CVE-2021-32761 | HIGH | 7.5 | 31.0% | Jul 21, 2021 | Redis is an in-memory database that persists on disk. A vulnerability involving out-of-bounds read and integer overflow ... |
| CVE-2021-32756 | HIGH | 8.8 | 1.5% | Jul 21, 2021 | ManageIQ is an open-source management platform. In versions prior to jansa-4, kasparov-2, and lasker-1, there is a flaw ... |
| CVE-2021-35482 | HIGH | 7.8 | 0.4% | Jul 21, 2021 | An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to ac... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now