2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-20221 | MEDIUM | 6 | 0.3% | May 13, 2021 | An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and i... |
| CVE-2021-20181 | HIGH | 7.5 | 0.3% | May 13, 2021 | A race condition flaw was found in the 9pfs server implementation of QEMU up to and including 5.2.0. This flaw allows a ... |
| CVE-2021-3528 | HIGH | 8.8 | 0.9% | May 13, 2021 | A flaw was found in noobaa-operator in versions before 5.7.0, where internal RPC AuthTokens between the noobaa operator ... |
| CVE-2021-20025 | HIGH | 7.8 | 0.4% | May 13, 2021 | SonicWall Email Security Virtual Appliance version 10.0.9 and earlier versions contain a default username and a password... |
| CVE-2021-25693 | HIGH | 7.5 | 1.0% | May 13, 2021 | An attacker may cause a Denial of Service (DoS) in multiple versions of Teradici PCoIP Agent via a null pointer derefere... |
| CVE-2021-20999 | CRITICAL | 9.8 | 0.9% | May 13, 2021 | In Weidmüller u-controls and IoT-Gateways in versions up to 1.12.1 a network port intended only for device-internal usag... |
| CVE-2021-20998 | CRITICAL | 9.8 | 1.1% | May 13, 2021 | In multiple managed switches by WAGO in different versions without authorization and with specially crafted packets it i... |
| CVE-2021-20997 | HIGH | 7.5 | 1.0% | May 13, 2021 | In multiple managed switches by WAGO in different versions it is possible to read out the password hashes of all Web-bas... |
| CVE-2021-20996 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | In multiple managed switches by WAGO in different versions special crafted requests can lead to cookies being transferre... |
| CVE-2021-20995 | HIGH | 7.5 | 0.5% | May 13, 2021 | In multiple managed switches by WAGO in different versions the webserver cookies of the web based UI contain user creden... |
| CVE-2021-20994 | MEDIUM | 6.1 | 0.6% | May 13, 2021 | In multiple managed switches by WAGO in different versions an attacker may trick a legitimate user to click a link to in... |
| CVE-2021-20993 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | In multiple managed switches by WAGO in different versions the activated directory listing provides an attacker with the... |
| CVE-2021-20988 | HIGH | 7.5 | 1.0% | May 13, 2021 | In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicat... |
| CVE-2021-20250 | MEDIUM | 4.3 | 0.7% | May 13, 2021 | A flaw was found in wildfly. The JBoss EJB client has publicly accessible privileged actions which may lead to informati... |
| CVE-2021-25694 | HIGH | 7.8 | 0.3% | May 13, 2021 | Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll. An attacker could replace the .dll... |
| CVE-2021-26311 | HIGH | 7.2 | 1.7% | May 13, 2021 | In the AMD SEV/SEV-ES feature, memory can be rearranged in the guest address space that is not detected by the attestati... |
| CVE-2021-22154 | MEDIUM | 5.3 | 0.8% | May 13, 2021 | An Information Disclosure vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and... |
| CVE-2021-22153 | HIGH | 7.3 | 1.0% | May 13, 2021 | A Remote Code Execution vulnerability in the Management Console component of BlackBerry UEM version(s) 12.13.1 QF2 and e... |
| CVE-2021-22152 | MEDIUM | 5.5 | 0.2% | May 13, 2021 | A Denial of Service due to Improper Input Validation vulnerability in the Management Console component of BlackBerry UEM... |
| CVE-2021-20331 | MEDIUM | 4.9 | 0.6% | May 13, 2021 | Specific versions of the MongoDB C# Driver may erroneously publish events containing authentication-related data to a co... |
| CVE-2021-31215 | HIGH | 8.8 | 2.9% | May 13, 2021 | SchedMD Slurm before 20.02.7 and 20.03.x through 20.11.x before 20.11.7 allows remote code execution as SlurmUser becaus... |
| CVE-2021-28799 | CRITICAL | 9.8 | 78.4% | May 13, 2021 | An improper authorization vulnerability has been reported to affect QNAP NAS running HBS 3 (Hybrid Backup Sync. ) If exp... |
| CVE-2021-22155 | HIGH | 8.8 | 1.0% | May 13, 2021 | An Authentication Bypass vulnerability in the SAML Authentication component of BlackBerry Workspaces Server (deployed wi... |
| CVE-2021-23135 | MEDIUM | 5.5 | 0.2% | May 12, 2021 | Exposure of System Data to an Unauthorized Control Sphere vulnerability in web UI of Argo CD allows attacker to cause le... |
| CVE-2021-23134 | HIGH | 7.8 | 0.3% | May 12, 2021 | Use After Free vulnerability in nfc sockets in the Linux Kernel before 5.12.4 allows local attackers to elevate their pr... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now