2021 CVE Vulnerabilities
23,466 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0590 | MEDIUM | 4.4 | 0.1% | Jul 14, 2021 | In sendNetworkConditionsBroadcast of NetworkMonitor.java, there is a possible way for a privileged app to receive WiFi B... |
| CVE-2021-0589 | HIGH | 7.8 | 0.3% | Jul 14, 2021 | In BTM_TryAllocateSCN of btm_scn.cc, there is a possible out of bounds write due to an incorrect bounds check. This coul... |
| CVE-2021-0588 | MEDIUM | 5.5 | 0.1% | Jul 14, 2021 | In processInboundMessage of MceStateMachine.java, there is a possible SMS disclosure due to a missing permission check. ... |
| CVE-2021-0587 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In StreamOut::prepareForWriting of StreamOut.cpp, there is a possible out of bounds write due to a use after free. This ... |
| CVE-2021-0586 | HIGH | 7.8 | 0.3% | Jul 14, 2021 | In onCreate of DevicePickerFragment.java, there is a possible way to trick the user to select an unwanted bluetooth devi... |
| CVE-2021-0585 | MEDIUM | 6.7 | 0.1% | Jul 14, 2021 | In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validat... |
| CVE-2021-0577 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In flv extractor, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escala... |
| CVE-2021-0518 | MEDIUM | 5.5 | 0.1% | Jul 14, 2021 | In Wi-Fi, there is a possible leak of location-sensitive data due to a missing permission check. This could lead to loca... |
| CVE-2021-0515 | CRITICAL | 9.8 | 1.4% | Jul 14, 2021 | In Factory::CreateStrictFunctionMap of factory.cc, there is a possible out of bounds write due to an incorrect bounds ch... |
| CVE-2021-0514 | HIGH | 8.1 | 1.0% | Jul 14, 2021 | In several functions of the V8 library, there is a possible use after free due to a race condition. This could lead to r... |
| CVE-2021-0486 | HIGH | 7.8 | 0.1% | Jul 14, 2021 | In onPackageAddedInternal of PermissionManagerService.java, there is possible access to external storage due to a permis... |
| CVE-2021-0441 | HIGH | 7.3 | 0.1% | Jul 14, 2021 | In onCreate of PermissionActivity.java, there is a possible permission bypass due to Confusing UI. This could lead to lo... |
| CVE-2021-0144 | MEDIUM | 6.7 | 0.3% | Jul 14, 2021 | Insecure default variable initialization for the Intel BSSA DFT feature may allow a privileged user to potentially enabl... |
| CVE-2021-24119 | MEDIUM | 4.9 | 1.4% | Jul 14, 2021 | In Trusted Firmware Mbed TLS 2.24.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (admin... |
| CVE-2021-24116 | MEDIUM | 4.9 | 1.0% | Jul 14, 2021 | In wolfSSL through 4.6.0, a side-channel vulnerability in base64 PEM file decoding allows system-level (administrator) a... |
| CVE-2021-35469 | HIGH | 7.8 | 0.2% | Jul 14, 2021 | The Lexmark Printer Software G2, G3 and G4 Installation Packages have a local escalation of privilege vulnerability due ... |
| CVE-2021-33689 | MEDIUM | 4.3 | 0.5% | Jul 14, 2021 | When user with insufficient privileges tries to access any application in SAP NetWeaver Administrator (Administrator app... |
| CVE-2021-33687 | MEDIUM | 4.9 | 1.6% | Jul 14, 2021 | SAP NetWeaver AS JAVA (Enterprise Portal), versions - 7.10, 7.20, 7.30, 7.31, 7.40, 7.50 reveals sensitive information i... |
| CVE-2021-33684 | MEDIUM | 5.3 | 1.2% | Jul 14, 2021 | SAP NetWeaver AS ABAP and ABAP Platform, versions - KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC 7.21, 7.21EXT, 7.22... |
| CVE-2021-33683 | MEDIUM | 4.3 | 0.5% | Jul 14, 2021 | SAP Web Dispatcher and Internet Communication Manager (ICM), versions - KRNL32NUC 7.21, 7.21EXT, 7.22, 7.22EXT, KRNL32UC... |
| CVE-2021-33682 | MEDIUM | 5.4 | 0.6% | Jul 14, 2021 | SAP Lumira Server version 2.4 does not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XS... |
| CVE-2021-33681 | MEDIUM | 6.5 | 0.8% | Jul 14, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources... |
| CVE-2021-33680 | MEDIUM | 6.5 | 0.8% | Jul 14, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated CGM file received from untrusted sources... |
| CVE-2021-33678 | MEDIUM | 6.5 | 2.5% | Jul 14, 2021 | A function module of SAP NetWeaver AS ABAP (Reconciliation Framework), versions - 700, 701, 702, 710, 711, 730, 731, 740... |
| CVE-2021-33677 | HIGH | 7.5 | 1.1% | Jul 14, 2021 | SAP NetWeaver ABAP Server and ABAP Platform, versions - 700, 702, 730, 731, 804, 740, 750, 784, expose functions to exte... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now