2021 CVE Vulnerabilities
23,466 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22363 | HIGH | 7.5 | 0.7% | Jun 22, 2021 | There is a resource management error vulnerability in eCNS280_TD V100R005C10SPC650. An attacker needs to perform specifi... |
| CVE-2021-22342 | MEDIUM | 4.9 | 0.6% | Jun 22, 2021 | There is an information leak vulnerability in Huawei products. A module does not deal with specific input sufficiently. ... |
| CVE-2021-3044 | CRITICAL | 9.8 | 1.4% | Jun 22, 2021 | An improper authorization vulnerability in Palo Alto Networks Cortex XSOAR enables a remote unauthenticated attacker wit... |
| CVE-2021-32644 | MEDIUM | 5.4 | 0.8% | Jun 22, 2021 | Ampache is an open source web based audio/video streaming application and file manager. Due to a lack of input filtering... |
| CVE-2021-22366 | MEDIUM | 5.5 | 0.2% | Jun 22, 2021 | There is an out-of-bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. Th... |
| CVE-2021-22365 | LOW | 3.3 | 0.1% | Jun 22, 2021 | There is an out of bounds read vulnerability in eSE620X vESS V100R001C10SPC200, V100R001C20SPC200, V200R001C00SPC300. A ... |
| CVE-2021-22361 | HIGH | 7.8 | 0.2% | Jun 22, 2021 | There is an improper authorization vulnerability in eCNS280 V100R005C00, V100R005C10 and eSE620X vESS V100R001C10SPC200,... |
| CVE-2021-34428 | LOW | 3.5 | 1.0% | Jun 22, 2021 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDe... |
| CVE-2021-35206 | MEDIUM | 6.1 | 1.2% | Jun 22, 2021 | Gitpod before 0.6.0 allows unvalidated redirects. |
| CVE-2021-35046 | MEDIUM | 6.1 | 0.8% | Jun 22, 2021 | A session fixation vulnerability was discovered in Ice Hrm 29.0.0 OS which allows an attacker to hijack a valid user ses... |
| CVE-2021-35045 | MEDIUM | 6.1 | 1.1% | Jun 22, 2021 | Cross site scripting (XSS) vulnerability in Ice Hrm 29.0.0.OS, allows attackers to execute arbitrary code via the parame... |
| CVE-2021-34244 | HIGH | 8.8 | 0.6% | Jun 22, 2021 | A cross site request forgery (CSRF) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to create n... |
| CVE-2021-34243 | MEDIUM | 5.4 | 0.6% | Jun 22, 2021 | A stored cross site scripting (XSS) vulnerability was discovered in Ice Hrm 29.0.0.OS which allows attackers to execute ... |
| CVE-2021-0608 | HIGH | 7.8 | 0.1% | Jun 22, 2021 | In handleAppLaunch of AppLaunchActivity.java, there is a possible arbitrary activity launch due to a confused deputy. Th... |
| CVE-2021-0607 | HIGH | 7.8 | 0.1% | Jun 22, 2021 | In iaxxx_calc_i2s_div of iaxxx-codec.c, there is a possible hardware port write with user controlled data due to a missi... |
| CVE-2021-0606 | MEDIUM | 6.7 | 0.2% | Jun 22, 2021 | In drm_syncobj_handle_to_fd of drm_syncobj.c, there is a possible use after free due to incorrect refcounting. This coul... |
| CVE-2021-0605 | MEDIUM | 4.4 | 0.2% | Jun 22, 2021 | In pfkey_dump of af_key.c, there is a possible out-of-bounds read due to a missing bounds check. This could lead to loca... |
| CVE-2021-0553 | HIGH | 7.3 | 0.1% | Jun 22, 2021 | In onBindViewHolder of AppSwitchPreference.java, there is a possible bypass of device admin setttings due to unclear UI.... |
| CVE-2021-0552 | MEDIUM | 5.5 | 0.1% | Jun 22, 2021 | In getEndItemSliceAction of MediaOutputSlice.java, there is a possible permission bypass due to an unsafe PendingIntent.... |
| CVE-2021-0551 | MEDIUM | 6.5 | 0.6% | Jun 22, 2021 | In bind of MediaControlPanel.java, there is a possible way to lock up the system UI using a malicious media file due to ... |
| CVE-2021-0550 | HIGH | 7.8 | 0.1% | Jun 22, 2021 | In onLoadFailed of AnnotateActivity.java, there is a possible way to gain WRITE_EXTERNAL_STORAGE permissions without use... |
| CVE-2021-0549 | MEDIUM | 4.4 | 0.1% | Jun 22, 2021 | In sspRequestCallback of BondStateMachine.java, there is a possible leak of Bluetooth MAC addresses due to log informati... |
| CVE-2021-0548 | HIGH | 7.8 | 0.1% | Jun 22, 2021 | In rw_i93_send_to_lower of rw_i93.cc, there is a possible out of bounds write due to a missing bounds check. This could ... |
| CVE-2021-0547 | HIGH | 7.8 | 0.1% | Jun 22, 2021 | In onReceive of NetInitiatedActivity.java, there is a possible way to supply an attacker-controlled value to a GPS HAL h... |
| CVE-2021-0546 | MEDIUM | 6.7 | 0.1% | Jun 22, 2021 | In phNxpNciHal_print_res_status of phNxpNciHal.cc, there is a possible out of bounds write due to a missing bounds check... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now