2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-22889 | MEDIUM | 6.1 | 36.3% | Mar 25, 2021 | Revive Adserver before v5.2.0 is vulnerable to a reflected XSS vulnerability in the `statsBreakdown` parameter of stats.... |
| CVE-2021-22888 | MEDIUM | 6.1 | 19.8% | Mar 25, 2021 | Revive Adserver before v5.2.0 is vulnerable to a reflected XSS vulnerability in the `status` parameter of campaign-zone-... |
| CVE-2021-3467 | MEDIUM | 5.5 | 0.6% | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.26 handled component references in CDEF ... |
| CVE-2021-3466 | CRITICAL | 9.8 | 8.7% | Mar 25, 2021 | A flaw was found in libmicrohttpd. A missing bounds check in the post_process_urlencoded function leads to a buffer over... |
| CVE-2021-3446 | MEDIUM | 5.5 | 0.1% | Mar 25, 2021 | A flaw was found in libtpms in versions before 0.8.2. The commonly used integration of libtpms with OpenSSL contained a ... |
| CVE-2021-3443 | MEDIUM | 5.5 | 0.8% | Mar 25, 2021 | A NULL pointer dereference flaw was found in the way Jasper versions before 2.0.27 handled component references in the J... |
| CVE-2021-29096 | HIGH | 7.8 | 1.5% | Mar 25, 2021 | A use-after-free vulnerability when parsing a specially crafted file in Esri ArcReader, ArcGIS Desktop, ArcGIS Engine 10... |
| CVE-2021-27195 | MEDIUM | 5.9 | 0.8% | Mar 25, 2021 | Improper Authorization vulnerability in Netop Vision Pro up to and including to 9.7.1 allows an attacker to replay netwo... |
| CVE-2021-27194 | HIGH | 8.8 | 0.4% | Mar 25, 2021 | Cleartext transmission of sensitive information in Netop Vision Pro up to and including 9.7.1 allows a remote unauthenti... |
| CVE-2021-27193 | CRITICAL | 9.8 | 1.5% | Mar 25, 2021 | Incorrect default permissions vulnerability in the API of Netop Vision Pro up to and including 9.7.1 allows a remote una... |
| CVE-2021-27192 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Local privilege escalation vulnerability in Windows clients of Netop Vision Pro up to and including 9.7.1 allows a local... |
| CVE-2021-26597 | MEDIUM | 6.5 | 1.4% | Mar 25, 2021 | An issue was discovered in Nokia NetAct 18A. A remote user, authenticated to the NOKIA NetAct Web Page, can visit the Si... |
| CVE-2021-26596 | MEDIUM | 5.4 | 0.7% | Mar 25, 2021 | An issue was discovered in Nokia NetAct 18A. A malicious user can change a filename of an uploaded file to include JavaS... |
| CVE-2021-20217 | HIGH | 7.5 | 1.4% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead ... |
| CVE-2021-20216 | HIGH | 7.5 | 2.3% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly m... |
| CVE-2021-20215 | HIGH | 7.5 | 2.3% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocatio... |
| CVE-2021-20214 | HIGH | 7.5 | 2.0% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are ... |
| CVE-2021-20213 | HIGH | 7.5 | 1.6% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if acc... |
| CVE-2021-20212 | HIGH | 7.5 | 2.0% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is ... |
| CVE-2021-20211 | HIGH | 7.5 | 2.1% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash. |
| CVE-2021-20210 | HIGH | 7.5 | 2.4% | Mar 25, 2021 | A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files a... |
| CVE-2021-25368 | HIGH | 7.5 | 0.6% | Mar 25, 2021 | Hijacking vulnerability in Samsung Cloud prior to version 4.7.0.3 allows attackers to intercept when the provider is exe... |
| CVE-2021-25367 | MEDIUM | 5.4 | 0.6% | Mar 25, 2021 | Path Traversal vulnerability in Samsung Notes prior to version 4.2.00.22 allows attackers to access local files without ... |
| CVE-2021-25366 | LOW | 2.9 | 0.3% | Mar 25, 2021 | Improper access control in Samsung Internet prior to version 13.2.1.70 allows physically proximate attackers to bypass t... |
| CVE-2021-25355 | HIGH | 7.8 | 0.2% | Mar 25, 2021 | Using unsafe PendingIntent in Samsung Notes prior to version 4.2.00.22 allows local attackers unauthorized action withou... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now