2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-0489 | HIGH | 7.8 | 0.1% | Jun 11, 2021 | In memory management driver, there is a possible out of bounds write due to a missing bounds check. This could lead to l... |
| CVE-2021-0487 | HIGH | 7.8 | 0.1% | Jun 11, 2021 | In onCreate of CalendarDebugActivity.java, there is a possible way to export calendar data to the sdcard without user co... |
| CVE-2021-0485 | HIGH | 7.8 | 0.2% | Jun 11, 2021 | In getMinimalSize of PipBoundsAlgorithm.java, there is a possible bypass of restrictions on background processes due to ... |
| CVE-2021-0484 | MEDIUM | 5.5 | 0.1% | Jun 11, 2021 | In readVector of IMediaPlayer.cpp, there is a possible read of uninitialized heap data due to a missing bounds check. Th... |
| CVE-2021-0482 | HIGH | 7 | 0.1% | Jun 11, 2021 | In BinderDiedCallback of MediaCodec.cpp, there is a possible memory corruption due to a use after free. This could lead ... |
| CVE-2021-0481 | HIGH | 7.8 | 0.8% | Jun 11, 2021 | In onActivityResult of EditUserPhotoController.java, there is a possible access of unauthorized files due to an unexpect... |
| CVE-2021-0480 | MEDIUM | 5.5 | 0.4% | Jun 11, 2021 | In createPendingIntent of SnoozeHelper.java, there is a possible broadcast intent containing a sensitive identifier. Thi... |
| CVE-2021-0477 | HIGH | 7.8 | 0.1% | Jun 11, 2021 | In notifyScreenshotError of ScreenshotNotificationsController.java, there is a possible permission bypass due to an unsa... |
| CVE-2021-0476 | HIGH | 7 | 0.2% | Jun 11, 2021 | In FindOrCreatePeer of btif_av.cc, there is a possible use after free due to a race condition. This could lead to local ... |
| CVE-2021-0475 | HIGH | 8.8 | 1.0% | Jun 11, 2021 | In on_l2cap_data_ind of btif_sock_l2cap.cc, there is possible memory corruption due to a use after free. This could lead... |
| CVE-2021-0474 | CRITICAL | 9.8 | 3.4% | Jun 11, 2021 | In avrc_msg_cback of avrc_api.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead... |
| CVE-2021-0473 | HIGH | 8.8 | 0.5% | Jun 11, 2021 | In rw_t3t_process_error of rw_t3t.cc, there is a possible double free due to uninitialized data. This could lead to remo... |
| CVE-2021-0472 | HIGH | 7.8 | 0.2% | Jun 11, 2021 | In shouldLockKeyguard of LockTaskController.java, there is a possible way to exit App Pinning without a PIN due to a per... |
| CVE-2021-0466 | HIGH | 7.5 | 1.4% | Jun 11, 2021 | In startIpClient of ClientModeImpl.java, there is a possible identifier which could be used to track a device. This coul... |
| CVE-2021-28213 | HIGH | 7.5 | 1.1% | Jun 11, 2021 | Example EDK2 encrypted private key in the IpSecDxe.efi present potential security risks. |
| CVE-2021-28211 | MEDIUM | 6.7 | 0.4% | Jun 11, 2021 | A heap overflow in LzmaUefiDecompressGetInfo function in EDK II. |
| CVE-2021-28210 | HIGH | 7.8 | 0.4% | Jun 11, 2021 | An unlimited recursion in DxeCore in EDK II. |
| CVE-2021-23230 | MEDIUM | 4.3 | 0.7% | Jun 11, 2021 | A SQL Injection vulnerability in the OPCUA interface of Gallagher Command Centre allows a remote unprivileged Command Ce... |
| CVE-2021-23211 | MEDIUM | 4.4 | 0.1% | Jun 11, 2021 | Cleartext Storage of Sensitive Information in Memory vulnerability in Gallagher Command Centre Server allows Cloud end-t... |
| CVE-2021-23205 | HIGH | 8.1 | 0.9% | Jun 11, 2021 | Improper Encoding or Escaping in Gallagher Command Centre Server allows a Command Centre Operator to alter the configura... |
| CVE-2021-23204 | MEDIUM | 6.5 | 0.7% | Jun 11, 2021 | Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gallagher Command Centre Server allows OSDP ... |
| CVE-2021-23182 | MEDIUM | 4.4 | 0.2% | Jun 11, 2021 | Cleartext Storage of Sensitive Information in Memory vulnerability in Gallagher Command Centre Server allows OSDP reader... |
| CVE-2021-23140 | HIGH | 8.8 | 0.9% | Jun 11, 2021 | Improper Authorization vulnerability in Gallagher Command Centre Server allows command line macros to be modified by an ... |
| CVE-2021-23136 | MEDIUM | 6.5 | 0.6% | Jun 11, 2021 | Improper Authorization vulnerability in Gallagher Command Centre Server allows macro overrides to be performed by an unp... |
| CVE-2021-22915 | CRITICAL | 9.8 | 1.7% | Jun 11, 2021 | Nextcloud server before 19.0.11, 20.0.10, 21.0.2 is vulnerable to brute force attacks due to lack of inclusion of IPv6 s... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now