2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27573 | CRITICAL | 9.8 | 14.2% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Remote unauthenticated users can execute arbitrary code v... |
| CVE-2021-27572 | HIGH | 8.1 | 3.2% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Authentication Bypass can occur via Packet Replay. Remote... |
| CVE-2021-27571 | MEDIUM | 5.3 | 1.1% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can retrieve recently used and running applicat... |
| CVE-2021-27570 | MEDIUM | 5.3 | 1.4% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 3.015. Attackers can close any running process by sending the proc... |
| CVE-2021-27569 | MEDIUM | 5.3 | 0.6% | May 7, 2021 | An issue was discovered in Emote Remote Mouse through 4.0.0.0. Attackers can maximize or minimize the window of a runnin... |
| CVE-2021-29495 | HIGH | 7.5 | 0.5% | May 7, 2021 | Nim is a statically typed compiled systems programming language. In Nim standard library before 1.4.2, httpClient SSL/TL... |
| CVE-2021-22677 | HIGH | 7.8 | 0.3% | May 7, 2021 | An integer overflow exists in the APIs of the host MCU while trying to connect to a WIFI network may lead to issues such... |
| CVE-2021-32259 | — | — | — | May 7, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA |
| CVE-2021-29488 | MEDIUM | 5.3 | 0.9% | May 7, 2021 | SABnzbd is an open source binary newsreader. A vulnerability was discovered in SABnzbd that could trick the `filesystem.... |
| CVE-2021-27437 | CRITICAL | 9.1 | 1.2% | May 7, 2021 | The affected product allows attackers to obtain sensitive information from the WISE-PaaS dashboard. The system contains ... |
| CVE-2021-21419 | MEDIUM | 5.3 | 1.8% | May 7, 2021 | Eventlet is a concurrent networking library for Python. A websocket peer may exhaust memory on Eventlet side by sending ... |
| CVE-2021-22673 | HIGH | 8 | 1.2% | May 7, 2021 | The affected product is vulnerable to stack-based buffer overflow while processing over-the-air firmware updates from th... |
| CVE-2021-22671 | CRITICAL | 9.8 | 1.8% | May 7, 2021 | Multiple integer overflow issues exist while processing long domain names, which may allow an attacker to remotely execu... |
| CVE-2021-22679 | CRITICAL | 9.8 | 1.8% | May 7, 2021 | The affected product is vulnerable to an integer overflow while processing HTTP headers, which may allow an attacker to ... |
| CVE-2021-22675 | HIGH | 7.2 | 1.4% | May 7, 2021 | The affected product is vulnerable to integer overflow while parsing malformed over-the-air firmware update files, which... |
| CVE-2021-3502 | MEDIUM | 5.5 | 0.4% | May 7, 2021 | A flaw was found in avahi 0.8-5. A reachable assertion is present in avahi_s_host_name_resolver_start function allowing ... |
| CVE-2021-26123 | MEDIUM | 6.1 | 0.7% | May 7, 2021 | LivingLogic XIST4C before 0.107.8 allows XSS via login.htm, login.wihtm, or login-form.htm. |
| CVE-2021-26122 | MEDIUM | 6.1 | 0.7% | May 7, 2021 | LivingLogic XIST4C before 0.107.8 allows XSS via feedback.htm or feedback.wihtm. |
| CVE-2021-21984 | CRITICAL | 9.8 | 2.0% | May 7, 2021 | VMware vRealize Business for Cloud 7.x prior to 7.6.0 contains a remote code execution vulnerability due to an unauthori... |
| CVE-2021-30173 | MEDIUM | 6.5 | 1.2% | May 7, 2021 | Local File Inclusion vulnerability of the omni-directional communication system allows remote authenticated attacker inj... |
| CVE-2021-30172 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of picture preview page in the Quan-Fang-Wei-Tong-Xun system are not filtered in users’ input, which ... |
| CVE-2021-30171 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of ERP POS news page are not filtered in users’ input, which allow remote authenticated attackers can... |
| CVE-2021-30170 | MEDIUM | 5.4 | 0.6% | May 7, 2021 | Special characters of ERP POS customer profile page are not filtered in users’ input, which allow remote authenticated a... |
| CVE-2021-1927 | HIGH | 7.8 | 0.2% | May 7, 2021 | Possible use after free due to lack of null check while memory is being freed in FastRPC driver in Snapdragon Auto, Snap... |
| CVE-2021-1925 | HIGH | 7.5 | 0.6% | May 7, 2021 | Possible denial of service scenario due to improper handling of group management action frame in Snapdragon Auto, Snapdr... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now