2021 CVE Vulnerabilities

23,466 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-25655MEDIUM6.1A vulnerability in the system Service Menu component of Avaya Aura Experience Portal may allow URL Redirection to any un...
CVE-2021-25653HIGH7.8A privilege escalation vulnerability was discovered in Avaya Aura Appliance Virtualization Platform Utilities (AVPU) tha...
CVE-2021-25652MEDIUM5.5An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Appliance Virt...
CVE-2021-25651HIGH7.8A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local us...
CVE-2021-25650HIGH8.8A privilege escalation vulnerability was discovered in Avaya Aura Utility Services that may potentially allow a local us...
CVE-2021-25649MEDIUM5.5An information disclosure vulnerability was discovered in the directory and file management of Avaya Aura Utility Servic...
CVE-2021-28800CRITICAL9.8A command injection vulnerability has been reported to affect QNAP NAS running legacy versions of QTS. If exploited, thi...
CVE-2021-35041HIGH7.5The blockchain node in FISCO-BCOS V2.7.2 may have a bug when dealing with unformatted packet and lead to a crash. A mali...
CVE-2021-32823LOW3.7In the bindata RubyGem before version 2.4.10 there is a potential denial-of-service vulnerability. In affected versions ...
CVE-2021-2322HIGH8.8Vulnerability in OpenGrok (component: Web App). Versions that are affected are 1.6.7 and prior. Easily exploitable vulne...
CVE-2021-34071MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-34070MEDIUM5.5Out-of-bounds Read in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with...
CVE-2021-34069MEDIUM5.5Divide-by-zero bug in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with...
CVE-2021-34068MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-34067MEDIUM5.5Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the applicat...
CVE-2021-21809CRITICAL9.1A command execution vulnerability exists in the default legacy spellchecker plugin in Moodle 3.10. A specially crafted s...
CVE-2021-20019HIGH7.5A vulnerability in SonicOS where the HTTP server response leaks partial memory by sending a crafted HTTP request, this c...
CVE-2021-29620HIGH7.5Report portal is an open source reporting and analysis framework. Starting from version 3.1.0 of the service-api XML par...
CVE-2021-3526Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2021-33624MEDIUM4.7In kernel/bpf/verifier.c in the Linux kernel before 5.12.13, a branch can be mispredicted (e.g., because of type confusi...
CVE-2021-35438MEDIUM6.1phpIPAM 1.4.3 allows Reflected XSS via app/dashboard/widgets/ipcalc-result.php and app/tools/ip-calculator/result.php of...
CVE-2021-25950Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu...
CVE-2021-28977MEDIUM4.8Cross Site Scripting vulnerability in GetSimpleCMS 3.3.16 in admin/upload.php by adding comments or jpg and other file h...
CVE-2021-28976HIGH7.2Remote Code Execution vulnerability in GetSimpleCMS before 3.3.16 in admin/upload.php via phar filess.
CVE-2021-31586HIGH8.8Accellion Kiteworks before 7.4.0 allows an authenticated user to perform SQL Injection via LDAPGroup Search.

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now