2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-40846 | HIGH | 7.5 | 0.7% | Mar 4, 2022 | An issue was discovered in Rhinode Trading Paints through 2.0.36. TP Updater.exe uses cleartext HTTP to check, and reque... |
| CVE-2021-32008 | HIGH | 8.7 | 1.0% | Mar 4, 2022 | This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Improper Limitation of a Pathname ... |
| CVE-2021-27756 | HIGH | 7.5 | 0.5% | Mar 4, 2022 | "TLS-RSA cipher suites are not disabled in BigFix Compliance up to v2.0.5. If TLS 2.0 and secure ciphers are not enabled... |
| CVE-2021-3737 | HIGH | 7.5 | 11.6% | Mar 4, 2022 | A flaw was found in python. An improperly handled HTTP response in the HTTP client code of python may allow a remote att... |
| CVE-2021-3656 | HIGH | 8.8 | 0.7% | Mar 4, 2022 | A flaw was found in the KVM's AMD code for supporting SVM nested virtualization. The flaw occurs when processing the VMC... |
| CVE-2021-27757 | HIGH | 7.5 | 0.6% | Mar 4, 2022 | " Insecure password storage issue.The application stores sensitive information in cleartext within a resource that might... |
| CVE-2021-3575 | HIGH | 7.8 | 1.5% | Mar 4, 2022 | A heap-based buffer overflow was found in openjpeg in color.c:379:42 in sycc420_to_rgb when decompressing a crafted .j2k... |
| CVE-2021-20319 | HIGH | 7.8 | 0.5% | Mar 4, 2022 | An improper signature verification vulnerability was found in coreos-installer. A specially crafted gzip installation im... |
| CVE-2021-46381 | HIGH | 7.5 | 58.0% | Mar 4, 2022 | Local File Inclusion due to path traversal in D-Link DAP-1620 leads to unauthorized internal files reading [/etc/passwd]... |
| CVE-2021-3743 | HIGH | 7.1 | 0.7% | Mar 4, 2022 | An out-of-bounds (OOB) memory read flaw was found in the Qualcomm IPC router protocol in the Linux kernel. A missing san... |
| CVE-2021-23214 | HIGH | 8.1 | 1.9% | Mar 4, 2022 | When the server is configured to use trust authentication with a clientcert requirement or to use cert authentication, a... |
| CVE-2021-46378 | HIGH | 7.5 | 31.9% | Mar 4, 2022 | DLink DIR850 ET850-1.08TRb03 is affected by an incorrect access control vulnerability through an unauthenticated remote ... |
| CVE-2021-3640 | HIGH | 7 | 0.4% | Mar 3, 2022 | A flaw use-after-free in function sco_sock_sendmsg() of the Linux kernel HCI subsystem was found in the way user calls i... |
| CVE-2021-26948 | HIGH | 7.8 | 0.8% | Mar 3, 2022 | Null pointer dereference in the htmldoc v1.9.11 and before may allow attackers to execute arbitrary code and cause a den... |
| CVE-2021-26259 | HIGH | 7.8 | 1.1% | Mar 3, 2022 | A flaw was found in htmldoc in v1.9.12. Heap buffer overflow in render_table_row(),in ps-pdf.cxx may lead to arbitrary c... |
| CVE-2021-3609 | HIGH | 7 | 0.4% | Mar 3, 2022 | .A flaw was found in the CAN BCM networking protocol in the Linux kernel, where a local attacker can abuse a flaw in the... |
| CVE-2021-45819 | HIGH | 7.8 | 0.2% | Mar 3, 2022 | Wordline HIDCCEMonitorSVC before v5.2.4.3 contains an unquoted service path which allows attackers to escalate privilege... |
| CVE-2021-40636 | HIGH | 7.5 | 1.3% | Mar 3, 2022 | OS4ED openSIS 8.0 is affected by SQL Injection in CheckDuplicateName.php, which can extract information from the databas... |
| CVE-2021-40635 | HIGH | 7.5 | 1.3% | Mar 3, 2022 | OS4ED openSIS 8.0 is affected by SQL injection in ChooseCpSearch.php, ChooseRequestSearch.php. An attacker can inject a ... |
| CVE-2021-42950 | HIGH | 8.8 | 1.7% | Mar 3, 2022 | Remote Code Execution (RCE) vulnerability exists in Zepl Notebooks all previous versions before October 25 2021. Users c... |
| CVE-2021-44343 | HIGH | 7.8 | 0.7% | Mar 3, 2022 | David Brackeen ok-file-formats 203defd is vulnerable to Buffer Overflow. When the function of the ok-file-formats projec... |
| CVE-2021-44335 | HIGH | 7.8 | 0.7% | Mar 3, 2022 | David Brackeen ok-file-formats 203defd is vulnerable to Buffer Overflow. When the function of the ok-file-formats projec... |
| CVE-2021-4076 | HIGH | 7.5 | 1.5% | Mar 2, 2022 | A flaw exists in tang, a network-based cryptographic binding server, which could result in leak of private keys. |
| CVE-2021-3738 | HIGH | 8.8 | 1.8% | Mar 2, 2022 | In DCE/RPC it is possible to share the handles (cookies for resource state) between multiple connections via a mechanism... |
| CVE-2021-3715 | HIGH | 7.8 | 0.4% | Mar 2, 2022 | A flaw was found in the "Routing decision" classifier in the Linux kernel's Traffic Control networking subsystem in the ... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now