2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27131 | MEDIUM | 5.4 | 0.7% | May 16, 2023 | Moodle 3.10.1 is vulnerable to persistent/stored cross-site scripting (XSS) due to the improper input sanitization on th... |
| CVE-2021-0877 | CRITICAL | 9.8 | 0.3% | May 15, 2023 | Product: AndroidVersions: Android SoCAndroid ID: A-273754094 |
| CVE-2021-26674 | — | — | — | May 12, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26673 | — | — | — | May 12, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-39036 | MEDIUM | 6.1 | 0.5% | May 12, 2023 | IBM Cognos Analytics 11.1 and 11.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbit... |
| CVE-2021-34076 | HIGH | 8.8 | 0.9% | May 11, 2023 | File Upload vulnerability in PHPOK 5.7.140 allows remote attackers to run arbitrary code and gain escalated privileges v... |
| CVE-2021-45345 | HIGH | 7.5 | 1.3% | May 10, 2023 | Buffer Overflow vulnerability found in En3rgy WebcamServer v.0.5.2 allows a remote attacker to cause a denial of service... |
| CVE-2021-46794 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management... |
| CVE-2021-46792 | MEDIUM | 5.9 | 0.4% | May 9, 2023 | Time-of-check Time-of-use (TOCTOU) in the BIOS2PSP command may allow an attacker with a malicious BIOS to create a race ... |
| CVE-2021-46773 | HIGH | 8.8 | 0.8% | May 9, 2023 | Insufficient input validation in ABL may enable a privileged attacker to corrupt ASP memory, potentially resulting in a ... |
| CVE-2021-46765 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient input validation in ASP may allow an attacker with a compromised SMM to induce out-of-bounds memory reads w... |
| CVE-2021-46760 | CRITICAL | 9.8 | 0.8% | May 9, 2023 | A malicious or compromised UApp or ABL can send a malformed system call to the bootloader, which may result in an out-of... |
| CVE-2021-46759 | MEDIUM | 6.1 | 0.3% | May 9, 2023 | Improper syscall input validation in AMD TEE (Trusted Execution Environment) may allow an attacker with physical access ... |
| CVE-2021-46756 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Insufficient validation of inputs in SVC_MAP_USER_STACK in the ASP (AMD Secure Processor) bootloader may allow an attack... |
| CVE-2021-46755 | HIGH | 7.5 | 0.6% | May 9, 2023 | Failure to unmap certain SysHub mappings in error paths of the ASP (AMD Secure Processor) bootloader may allow an attack... |
| CVE-2021-46754 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Insufficient input validation in the ASP (AMD Secure Processor) bootloader may allow an attacker with a compromised Uapp... |
| CVE-2021-46775 | MEDIUM | 6.8 | 0.3% | May 9, 2023 | Improper input validation in ABL may enable an attacker with physical access, to perform arbitrary memory overwrites, po... |
| CVE-2021-46769 | HIGH | 8.8 | 0.8% | May 9, 2023 | Insufficient syscall input validation in the ASP Bootloader may allow a privileged attacker to execute arbitrary DMA cop... |
| CVE-2021-46764 | HIGH | 7.5 | 0.6% | May 9, 2023 | Improper validation of DRAM addresses in SMU may allow an attacker to overwrite sensitive memory locations within the AS... |
| CVE-2021-46763 | HIGH | 7.5 | 0.5% | May 9, 2023 | Insufficient input validation in the SMU may enable a privileged attacker to write beyond the intended bounds of a share... |
| CVE-2021-46762 | CRITICAL | 9.1 | 0.3% | May 9, 2023 | Insufficient input validation in the SMU may allow an attacker to corrupt SMU SRAM potentially leading to a loss of inte... |
| CVE-2021-46753 | CRITICAL | 9.1 | 0.6% | May 9, 2023 | Failure to validate the length fields of the ASP (AMD Secure Processor) sensor fusion hub headers may allow an attacker ... |
| CVE-2021-46749 | HIGH | 7.5 | 0.6% | May 9, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management... |
| CVE-2021-26406 | HIGH | 7.5 | 0.4% | May 9, 2023 | Insufficient validation in parsing Owner's Certificate Authority (OCA) certificates in SEV (AMD Secure Encrypted Virtual... |
| CVE-2021-26397 | HIGH | 7.1 | 0.2% | May 9, 2023 | Insufficient address validation, may allow an attacker with a compromised ABL and UApp to corrupt sensitive memory locat... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now