2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-0590MEDIUM4.4In sendNetworkConditionsBroadcast of NetworkMonitor.java, there is a possible way for a privileged app to receive WiFi B...
CVE-2021-0589HIGH7.8In BTM_TryAllocateSCN of btm_scn.cc, there is a possible out of bounds write due to an incorrect bounds check. This coul...
CVE-2021-0588MEDIUM5.5In processInboundMessage of MceStateMachine.java, there is a possible SMS disclosure due to a missing permission check. ...
CVE-2021-0587HIGH7.8In StreamOut::prepareForWriting of StreamOut.cpp, there is a possible out of bounds write due to a use after free. This ...
CVE-2021-0586HIGH7.8In onCreate of DevicePickerFragment.java, there is a possible way to trick the user to select an unwanted bluetooth devi...
CVE-2021-0585MEDIUM6.7In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validat...
CVE-2021-0577HIGH7.8In flv extractor, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escala...
CVE-2021-0518MEDIUM5.5In Wi-Fi, there is a possible leak of location-sensitive data due to a missing permission check. This could lead to loca...
CVE-2021-0515CRITICAL9.8In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an incorrect bounds ch...
CVE-2021-0514HIGH8.1In several functions of the V8 library, there is a possible use after free due to a race condition. This could lead to r...
CVE-2021-0486HIGH7.8In onPackageAddedInternal of PermissionManagerService.java, there is possible access to external storage due to a permis...
CVE-2021-0441HIGH7.3In onCreate of PermissionActivity.java, there is a possible permission bypass due to Confusing UI. This could lead to lo...
CVE-2021-0144MEDIUM6.7Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to potentially enabl...
CVE-2021-24119MEDIUM4.9In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (admin...
CVE-2021-24116MEDIUM4.9In wolfSSL through 4.6.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) a...
CVE-2021-35469HIGH7.8The Lexmark Printer Software G2, G3 and G4 Installation Packages have a local escalation of privilege vulnerability due ...
CVE-2021-33689MEDIUM4.3When user with insufficient privileges tries to access any application in SAP NetWeaver Administrator (Administrator app...
CVE-2021-33687MEDIUM4.9SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information i...
CVE-2021-33684MEDIUM5.3SAP NetWeaver AS ABAP and ABAP Platform, versions - KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22...
CVE-2021-33683MEDIUM4.3SAP Web Dispatcher and Internet Communication Manager (ICM), versions - KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC...
CVE-2021-33682MEDIUM5.4SAP Lumira Server version 2.4 does not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XS...
CVE-2021-33681MEDIUM6.5SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources...
CVE-2021-33680MEDIUM6.5SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources...
CVE-2021-33678MEDIUM6.5A function module of SAP NetWeaver AS ABAP (Reconciliation Framework), versions - 700, 701, 702, 710, 711, 730, 731, 740...
CVE-2021-33677HIGH7.5SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 702, 730, 731, 804, 740, 750, 784, expose functions to exte...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now