2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-47763HIGH8.8Aimeos 2021.10 LTS contains a SQL injection vulnerability in the json api 'sort' parameter that allows attackers to inje...
CVE-2021-47762HIGH8.5HTTPDebuggerPro 9.11 contains an unquoted service path vulnerability that allows local attackers to potentially execute ...
CVE-2021-47761HIGH8.5MilleGPG5 5.7.2 contains a local privilege escalation vulnerability that allows authenticated users to modify service ex...
CVE-2021-47758HIGH8.8Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability that allows attac...
CVE-2021-47757HIGH8.8Chikitsa Patient Management System 2.0.2 contains an authenticated remote code execution vulnerability in the backup res...
CVE-2021-47755HIGH8.7Oliver Library Server v5 contains a file download vulnerability that allows unauthenticated attackers to access arbitrar...
CVE-2021-47752HIGH8.7AWebServer GhostBuilding 18 contains a denial of service vulnerability that allows remote attackers to overwhelm the ser...
CVE-2021-47751HIGH7.5CuteEditor for PHP (now referred to as Rich Text Editor) 6.6 contains a directory traversal vulnerability in the browse ...
CVE-2021-47749HIGH8.7YouPHPTube <= 7.8 contains a local file inclusion vulnerability that allows unauthenticated attackers to access arbitrar...
CVE-2021-47747HIGH8.8meterN 1.2.3 contains an authenticated remote code execution vulnerability in admin_meter2.php and admin_indicator2.php ...
CVE-2021-47745HIGH8.8Cypress Solutions CTM-200 2.7.1 contains an authenticated command injection vulnerability in the firmware upgrade script...
CVE-2021-47742HIGH8.8Epic Games Psyonix Rocket League <=1.95 contains an insecure permissions vulnerability that allows authenticated users t...
CVE-2021-47741HIGH8.7ZBL EPON ONU Broadband Router V100R001 contains a privilege escalation vulnerability that allows limited administrative ...
CVE-2021-47740HIGH7.5KZTech JT3500V 4G LTE CPE 2.0.1 contains a session management vulnerability that allows attackers to reuse old session c...
CVE-2021-47726HIGH8.7NuCom 11N Wireless Router 5.07.90 contains a privilege escalation vulnerability that allows non-privileged users to acce...
CVE-2021-47739HIGH8.5Epic Games Easy Anti-Cheat 4.0 contains an unquoted service path vulnerability that allows local non-privileged users to...
CVE-2021-47736HIGH8.6CMSimple_XH 1.7.4 contains an authenticated remote code execution vulnerability in the content editing functionality tha...
CVE-2021-47735HIGH8.8CMSimple 5.4 contains an authenticated remote code execution vulnerability that allows logged-in attackers to inject mal...
CVE-2021-47734HIGH8.6CMSimple 5.4 contains an authenticated local file inclusion vulnerability that allows remote attackers to manipulate PHP...
CVE-2021-47721HIGH8.8Orangescrum 1.8.0 contains a privilege escalation vulnerability that allows authenticated users to take over other proje...
CVE-2021-47720HIGH8.7Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized users to manipulate datab...
CVE-2021-47713HIGH8.7Hasura GraphQL 1.3.3 contains a denial of service vulnerability that allows attackers to overwhelm the service by crafti...
CVE-2021-47712HIGH7.5A cryptography vulnerability in Kentico Xperience allows attackers to potentially manipulate URL hash values through exi...
CVE-2021-47711HIGH8.8A SQL injection vulnerability in Kentico Xperience allows authenticated editors to inject malicious SQL queries via onli...
CVE-2021-47730HIGH8.8Selea Targa IP OCR-ANPR Camera contains a cross-site request forgery vulnerability that allows attackers to create admin...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now