2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-44205HIGH7.3Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protec...
CVE-2021-44204HIGH7.8Local privilege escalation via named pipe due to improper access control checks. The following products are affected: Ac...
CVE-2021-40420HIGH8.8A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. A s...
CVE-2021-40401HIGH8.6A use-after-free vulnerability exists in the RS-274X aperture definition tokenization functionality of Gerbv 2.7.0 and d...
CVE-2021-38960HIGH7.5IBM OPENBMC OP920, OP930, and OP940 could allow an unauthenticated user to obtain sensitive information. IBM X-Force ID:...
CVE-2021-32036HIGH7.1An authenticated user without any specific authorizations may be able to repeatedly invoke the features command where at...
CVE-2021-29219HIGH7.8A potential local buffer overflow vulnerability has been identified in HPE FlexNetwork 5130 EL Switch Series version: Pr...
CVE-2021-22288HIGH7.5Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ...
CVE-2021-22286HIGH7.5Improper Input Validation vulnerability in the ABB SPIET800 and PNI800 module allows an attacker to cause the denial of ...
CVE-2021-22285HIGH7.5Improper Handling of Exceptional Conditions, Improper Check for Unusual or Exceptional Conditions vulnerability in the A...
CVE-2021-22284HIGH8.8Incorrect Permission Assignment for Critical Resource vulnerability in OPC Server for AC 800M allows an attacker to exec...
CVE-2021-21970HIGH8.1An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn...
CVE-2021-21969HIGH8.1An out-of-bounds write vulnerability exists in the HandleSeaCloudMessage functionality of Sealevel Systems, Inc. SeaConn...
CVE-2021-21968HIGH8.3A file write vulnerability exists in the OTA update task functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34...
CVE-2021-21964HIGH7.4A denial of service vulnerability exists in the Modbus configuration functionality of Sealevel Systems, Inc. SeaConnect ...
CVE-2021-21962HIGH8.1A heap-based buffer overflow vulnerability exists in the OTA Update u-download functionality of Sealevel Systems, Inc. S...
CVE-2021-21959HIGH8.1A misconfiguration exists in the MQTTS functionality of Sealevel Systems, Inc. SeaConnect 370W v1.3.34. This misconfigur...
CVE-2021-29397HIGH7.5Cleartext Transmission of Sensitive Information in /northstar/Admin/login.jsp in Northstar Technologies Inc NorthStar Cl...
CVE-2021-29395HIGH7.5Directory travesal in /northstar/filemanager/download.jsp in Northstar Technologies Inc NorthStar Club Management 6.3 al...
CVE-2021-46398HIGH8.8A Cross-Site Request Forgery vulnerability exists in Filebrowser < 2.18.0 that allows attackers to create a backdoor use...
CVE-2021-44977HIGH7.5In iCMS <=8.0.0, a directory traversal vulnerability allows an attacker to read arbitrary files.
CVE-2021-43145HIGH8.1With certain LDAP configurations, Zammad 5.0.1 was found to be vulnerable to unauthorized access with existing user acco...
CVE-2021-46320HIGH7.5In OpenZeppelin <=v4.4.0, initializer functions that are invoked separate from contract creation (the most prominent exa...
CVE-2021-44903HIGH7.8Micro-Star International (MSI) Center Pro <= 2.0.16.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulnerabi...
CVE-2021-44901HIGH7.8Micro-Star International (MSI) Dragon Center <= 2.0.116.0 is vulnerable to multiple Privilege Escalation (LPE/EoP) vulne...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now