2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20511MEDIUM4.9IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to traverse directories on the system. An attacke...
CVE-2021-20510MEDIUM4.4IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text which can be read by a local user. ...
CVE-2021-20500MEDIUM4.4IBM Security Verify Access Docker 10.0.0 could reveal highly sensitive information to a local privileged user. IBM X-For...
CVE-2021-20499LOW2.7IBM Security Verify Access Docker 10.0.0 could allow a remote attacker to obtain sensitive information when a detailed t...
CVE-2021-20498MEDIUM5.3IBM Security Verify Access Docker 10.0.0 reveals version information in HTTP requests that could be used in further atta...
CVE-2021-20497HIGH7.5IBM Security Verify Access Docker 10.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker...
CVE-2021-20496MEDIUM4.9IBM Security Verify Access Docker 10.0.0 could allow an authenticated user to bypass input due to improper input validat...
CVE-2021-3043MEDIUM4.8A reflected cross-site scripting (XSS) vulnerability exists in the Prisma Cloud Compute web console that enables a remot...
CVE-2021-3042HIGH7.8A local privilege escalation (PE) vulnerability exists in the Palo Alto Networks Cortex XDR agent on Windows platforms t...
CVE-2021-34429MEDIUM5.3For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characte...
CVE-2021-32750MEDIUM5.7MuWire is a file publishing and networking tool that protects the identity of its users by using I2P technology. Users o...
CVE-2021-21587LOW3.3Dell Wyse Management Suite versions 3.2 and earlier contain a full path disclosure vulnerability. A local unauthenticate...
CVE-2021-21586MEDIUM6.5Wyse Management Suite versions 3.2 and earlier contain an absolute path traversal vulnerability. A remote authenticated ...
CVE-2021-32743HIGH8.8Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generat...
CVE-2021-29749MEDIUM5.4IBM Secure External Authentication Server 6.0.2 and IBM Secure Proxy 6.0.2 is vulnerable to server-side request forgery ...
CVE-2021-29725HIGH7.5IBM Secure External Authentication Server 2.4.3.2, 6.0.1, 6.0.2 and IBM Secure Proxy 3.4.3.2, 6.0.1, 6.0.2 could allow a...
CVE-2021-27847MEDIUM6.5Division-By-Zero vulnerability in Libvips 8.10.5 in the function vips_eye_point, eye.c#L83, and function vips_mask_point...
CVE-2021-27845MEDIUM5.5A Divide-by-zero vulnerability exists in JasPer Image Coding Toolkit 2.0 in jasper/src/libjasper/jpc/jpc_enc.c
CVE-2021-20439HIGH7.5IBM Security Access Manager 9.0 and IBM Security Verify Access Docker 10.0.0 stores user credentials in plain clear text...
CVE-2021-32739HIGH8.8Icinga is a monitoring system which checks the availability of network resources, notifies users of outages, and generat...
CVE-2021-34692HIGH7.8iDrive RemotePC before 7.6.48 on Windows allows privilege escalation. A local and low-privileged user can force RemotePC...
CVE-2021-34691HIGH7.5iDrive RemotePC before 4.0.1 on Linux allows denial of service. A remote and unauthenticated attacker can disconnect a v...
CVE-2021-34690CRITICAL9.8iDrive RemotePC before 7.6.48 on Windows allows authentication bypass. A remote and unauthenticated attacker can bypass ...
CVE-2021-34689MEDIUM5.5iDrive RemotePC before 7.6.48 on Windows allows information disclosure. A locally authenticated attacker can read the sy...
CVE-2021-34688LOW3.3iDrive RemotePC before 7.6.48 on Windows allows information disclosure. A locally authenticated attacker can read an enc...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now