2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20366MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20365MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20364MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20363MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20362MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20361MEDIUM5.4IBM Cloud Pak for Applications 4.3 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit...
CVE-2021-20360HIGH7.5IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to de...
CVE-2021-36124CRITICAL9.8An issue was discovered in Echo ShareCare 8.15.5. It does not perform authentication or authorization checks when access...
CVE-2021-36123MEDIUM6.5An issue was discovered in Echo ShareCare 8.15.5. The TextReader feature in General/TextReader/TextReader.cfm is suscept...
CVE-2021-36122HIGH8.8An issue was discovered in Echo ShareCare 8.15.5. The UnzipFile feature in Access/EligFeedParse_Sup/UnzipFile_Upd.cfm is...
CVE-2021-36121HIGH8.8An issue was discovered in Echo ShareCare 8.15.5. The file-upload feature in Access/DownloadFeed_Mnt/FileUpload_Upd.cfm ...
CVE-2021-35957MEDIUM6.7Stormshield Endpoint Security Evolution 2.0.0 through 2.0.2 does not accomplish the intended defense against local admin...
CVE-2021-33578CRITICAL9.8Echo ShareCare 8.15.5 is susceptible to SQL injection vulnerabilities when processing remote input from both authenticat...
CVE-2021-31224LOW3.5SES Evolution before 2.1.0 allows duplicating an existing security policy by leveraging access of a user having read-onl...
CVE-2021-31223MEDIUM5.7SES Evolution before 2.1.0 allows reading some parts of a security policy by leveraging access to a computer having the ...
CVE-2021-31222MEDIUM5.7SES Evolution before 2.1.0 allows updating some parts of a security policy by leveraging access to a computer having the...
CVE-2021-31221MEDIUM5.7SES Evolution before 2.1.0 allows deleting some parts of a security policy by leveraging access to a computer having the...
CVE-2021-31220MEDIUM5.2SES Evolution before 2.1.0 allows modifying security policies by leveraging access of a user having read-only access to ...
CVE-2021-20593HIGH7.1Incorrect Implementation of Authentication Algorithm in Mitsubishi Electric Air Conditioning System/Centralized Controll...
CVE-2021-36376HIGH7.8dandavison delta before 0.8.3 on Windows resolves an executable's pathname as a relative path from the current directory...
CVE-2021-31810MEDIUM5.8An issue was discovered in Ruby through 2.6.7, 2.7.x through 2.7.3, and 3.x through 3.0.1. A malicious FTP server can us...
CVE-2021-31225HIGH7.3SES Evolution before 2.1.0 allows deleting some resources not currently in use by any security policy by leveraging acce...
CVE-2021-22440MEDIUM4.6There is a path traversal vulnerability in some Huawei products. The vulnerability is due to that the software uses exte...
CVE-2021-22399MEDIUM5.5The Bluetooth function of some Huawei smartphones has a DoS vulnerability. Attackers can install third-party apps to sen...
CVE-2021-34333MEDIUM5.5A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). Th...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now