2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-39299HIGH8.8Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation o...
CVE-2021-39298HIGH8.8A potential vulnerability in AMD System Management Mode (SMM) interrupt handler may allow an attacker with high privileg...
CVE-2021-39297HIGH8.8Potential vulnerabilities have been identified in UEFI firmware (BIOS) for some PC products which may allow escalation o...
CVE-2021-22050HIGH7.5ESXi contains a slow HTTP POST denial-of-service vulnerability in rhttpproxy. A malicious actor with network access to E...
CVE-2021-22043HIGH7.5VMware ESXi contains a TOCTOU (Time-of-check Time-of-use) vulnerability that exists in the way temporary files are handl...
CVE-2021-22042HIGH7.8VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A...
CVE-2021-21958HIGH7.8A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2...
CVE-2021-26726HIGH8.8A remote code execution vulnerability affecting a Valmet DNA service listening on TCP port 1517, allows an attacker to e...
CVE-2021-45391HIGH7.5A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in the goform/set...
CVE-2021-35380HIGH7.5A Directory Traversal vulnerability exists in Solari di Udine TermTalk Server (TTServer) 3.24.0.2, which lets an unauthe...
CVE-2021-42714HIGH7.8Splashtop Remote Client (Business Edition) through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permiss...
CVE-2021-42713HIGH7.8Splashtop Remote Client (Personal Edition) through 3.4.6.1 creates a Temporary File in a Directory with Insecure Permiss...
CVE-2021-43050HIGH7.8The Auth Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Container Edition contains an easily exploitabl...
CVE-2021-43734HIGH7.5kkFileview v4.0.0 has arbitrary file read through a directory traversal vulnerability which may lead to sensitive file l...
CVE-2021-42712HIGH7.8Splashtop Streamer through 3.4.8.3 creates a Temporary File in a Directory with Insecure Permissions.
CVE-2021-41552HIGH8.8CommScope SURFboard SBG6950AC2 9.1.103AA23 devices allow Command Injection.
CVE-2021-43940HIGH7.8Affected versions of Atlassian Confluence Server and Data Center allow authenticated local attackers to achieve elevated...
CVE-2021-46462HIGH7.5njs through 0.7.1, used in NGINX, was discovered to contain a segmentation violation via njs_object_set_prototype in /sr...
CVE-2021-45348HIGH7.5An Arbitrary File Deletion vulnerability exists in SourceCodester Attendance Management System v1.0 via the csv paramete...
CVE-2021-45347HIGH7.5An Incorrect Access Control vulnerability exists in zzcms 8.2, which lets a malicious user bypass authentication by chan...
CVE-2021-45392HIGH7.5A Buffer Overflow vulnerability exists in Tenda Router AX12 V22.03.01.21_CN in the sub_422CE4 function in page /goform/s...
CVE-2021-46371HIGH7.5antd-admin 5.5.0 is affected by an incorrect access control vulnerability. Unauthorized access to some interfaces in the...
CVE-2021-45421HIGH7.5Emerson Dixell XWEB-500 products are affected by information disclosure via directory listing. A potential attacker can ...
CVE-2021-45444HIGH7.8In zsh before 5.8.1, an attacker can achieve code execution if they control a command output inside the prompt, as demon...
CVE-2021-4102HIGH8.8Use after free in V8 in Google Chrome prior to 96.0.4664.110 allowed a remote attacker to potentially exploit heap corru...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now