2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-42857 | MEDIUM | 5.3 | 1.1% | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDaServlet has directory travers... |
| CVE-2021-42856 | MEDIUM | 6.1 | 0.6% | Mar 10, 2022 | It was discovered that the /DsaDataTest endpoint is susceptible to Cross-site scripting (XSS) attack. It was noted that ... |
| CVE-2021-41657 | MEDIUM | 6.1 | 1.1% | Mar 10, 2022 | SmartBear CodeCollaborator v6.1.6102 was discovered to contain a vulnerability in the web UI which would allow an attack... |
| CVE-2021-40059 | MEDIUM | 6.5 | 0.3% | Mar 10, 2022 | There is a permission control vulnerability in the Wi-Fi module. Successful exploitation of this vulnerability may affec... |
| CVE-2021-40055 | MEDIUM | 5.9 | 0.5% | Mar 10, 2022 | There is a man-in-the-middle attack vulnerability during system update download in recovery mode. Successful exploitatio... |
| CVE-2021-3733 | MEDIUM | 6.5 | 4.7% | Mar 10, 2022 | There's a flaw in urllib's AbstractBasicAuthHandler class. An attacker who controls a malicious HTTP server that an HTTP... |
| CVE-2021-3732 | MEDIUM | 5.5 | 0.3% | Mar 10, 2022 | A flaw was found in the Linux kernel's OverlayFS subsystem in the way the user mounts the TmpFS filesystem with OverlayF... |
| CVE-2021-3660 | MEDIUM | 4.3 | 1.2% | Mar 10, 2022 | Cockpit (and its plugins) do not seem to protect itself against clickjacking. It is possible to render a page from a coc... |
| CVE-2021-35251 | MEDIUM | 5.3 | 0.9% | Mar 10, 2022 | Sensitive information could be displayed when a detailed technical error message is posted. This information could discl... |
| CVE-2021-34342 | MEDIUM | 6.5 | 1.1% | Mar 10, 2022 | Ming 0.4.8 has an out-of-bounds read vulnerability in the function newVar_N() in decompile.c which causes a huge informa... |
| CVE-2021-34341 | MEDIUM | 6.5 | 0.9% | Mar 10, 2022 | Ming 0.4.8 has an out-of-bounds read vulnerability in the function decompileIF() in the decompile.c file that causes a d... |
| CVE-2021-34340 | MEDIUM | 6.5 | 0.9% | Mar 10, 2022 | Ming 0.4.8 has an out-of-bounds buffer access issue in the function decompileINCR_DECR() in decompiler.c file that cause... |
| CVE-2021-34339 | MEDIUM | 6.5 | 0.9% | Mar 10, 2022 | Ming 0.4.8 has an out-of-bounds buffer access issue in the function getString() in decompiler.c file that causes a direc... |
| CVE-2021-34338 | MEDIUM | 6.5 | 0.9% | Mar 10, 2022 | Ming 0.4.8 has an out-of-bounds buffer overwrite issue in the function getName() in decompiler.c file that causes a dire... |
| CVE-2021-34122 | MEDIUM | 5.5 | 0.8% | Mar 10, 2022 | The function bitstr_tell at bitstr.c in ffjpeg commit 4ab404e has a NULL pointer dereference. |
| CVE-2021-33852 | MEDIUM | 5.4 | 0.6% | Mar 10, 2022 | A cross-site scripting (XSS) attack can cause arbitrary code (JavaScript) to run in a user's browser and can use an appl... |
| CVE-2021-33851 | MEDIUM | 5.4 | 1.3% | Mar 10, 2022 | A cross-site scripting (XSS) attack can cause arbitrary code (JavaScript) to run in a user's browser and can use an appl... |
| CVE-2021-32436 | MEDIUM | 6.5 | 1.6% | Mar 10, 2022 | An out-of-bounds read in the function write_title() in subs.c of abcm2ps v8.14.11 allows remote attackers to cause a Den... |
| CVE-2021-32435 | MEDIUM | 5.5 | 1.3% | Mar 10, 2022 | Stack-based buffer overflow in the function get_key in parse.c of abcm2ps v8.14.11 allows remote attackers to cause a De... |
| CVE-2021-32434 | MEDIUM | 5.5 | 1.0% | Mar 10, 2022 | abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c. |
| CVE-2021-32006 | MEDIUM | 4.3 | 0.6% | Mar 10, 2022 | This issue affects: Secomea GateManager Version 9.6.621421014 and all prior versions. Permission Issues vulnerability in... |
| CVE-2021-32005 | MEDIUM | 5.4 | 0.6% | Mar 10, 2022 | Cross-site Scripting (XSS) vulnerability in log view of Secomea SiteManager allows a logged in user to store javascript ... |
| CVE-2021-28488 | MEDIUM | 6.5 | 1.1% | Mar 10, 2022 | Ericsson Network Manager (ENM) before 21.2 has incorrect access-control behavior (that only affects the level of access ... |
| CVE-2021-20269 | MEDIUM | 5.5 | 0.2% | Mar 10, 2022 | A flaw was found in the permissions of a log file created by kexec-tools. This flaw allows a local unprivileged user to ... |
| CVE-2021-41241 | MEDIUM | 4.3 | 0.8% | Mar 8, 2022 | Nextcloud server is a self hosted system designed to provide cloud style services. The groupfolders application for Next... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now