2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-28190MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Generate new certificate function) does not verify the...
CVE-2021-28189MEDIUM4.9The SMTP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by ...
CVE-2021-28188MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not verify th...
CVE-2021-28187MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Generate new SSL certificate) does not verify the stri...
CVE-2021-28186MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-2 acquisition) does not verify t...
CVE-2021-28185MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (ActiveX configuration-1 acquisition) does not verify t...
CVE-2021-28184MEDIUM4.9The Active Directory configuration function in ASUS BMC’s firmware Web management page does not verify the string length...
CVE-2021-28183MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Web License configuration setting) does not verify the...
CVE-2021-28182MEDIUM4.9The Web Service configuration function in ASUS BMC’s firmware Web management page does not verify the string length ente...
CVE-2021-28181MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Remote video configuration setting) does not verify th...
CVE-2021-28180MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Audit log configuration setting) does not verify the s...
CVE-2021-28179MEDIUM4.9The specific function in ASUS BMC’s firmware Web management page (Media support configuration setting) does not verify t...
CVE-2021-28178MEDIUM4.9The UEFI configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by ...
CVE-2021-28177MEDIUM4.9The LDAP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by ...
CVE-2021-28176MEDIUM4.9The DNS configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by u...
CVE-2021-28175MEDIUM4.9The Radius configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered b...
CVE-2021-30141HIGH7.5Module/Settings/UserExport.php in Friendica through 2021.01 allows settings/userexport to be used by anonymous users, as...
CVE-2021-20308CRITICAL9.8Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of se...
CVE-2021-20307CRITICAL9.8Format string vulnerability in panoFileOutputNamesCreate() in libpano13 2.9.20~rc2+dfsg-3 and earlier can lead to read a...
CVE-2021-20305HIGH8.1A flaw was found in Nettle in versions before 3.7.2, where several Nettle signature verification functions (GOST DSA, ED...
CVE-2021-24212CRITICAL9.8The WooCommerce Help Scout WordPress plugin before 2.9.1 (https://woocommerce.com/products/woocommerce-help-scout/) allo...
CVE-2021-24211MEDIUM5.4The WordPress Related Posts plugin through 3.6.4 contains an authenticated (admin+) stored XSS vulnerability in the titl...
CVE-2021-24210MEDIUM6.1There is an open redirect in the PhastPress WordPress plugin before 1.111 that allows an attacker to malform a request t...
CVE-2021-24209HIGH7.2The WP Super Cache WordPress plugin before 1.7.2 was affected by an authenticated (admin+) RCE in the settings page due ...
CVE-2021-24208MEDIUM5.4The editor of the WP Page Builder WordPress plugin before 1.2.4 allows lower-privileged users to insert unfiltered HTML,...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now