2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-1431 | HIGH | 7.5 | 1.6% | Mar 24, 2021 | A vulnerability in the vDaemon process of Cisco IOS XE SD-WAN Software could allow an unauthenticated, remote attacker t... |
| CVE-2021-1403 | HIGH | 7.4 | 0.6% | Mar 24, 2021 | A vulnerability in the web UI feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to conduc... |
| CVE-2021-1398 | MEDIUM | 6.8 | 0.4% | Mar 24, 2021 | A vulnerability in the boot logic of Cisco IOS XE Software could allow an authenticated, local attacker with level 15 pr... |
| CVE-2021-1394 | MEDIUM | 5.3 | 1.3% | Mar 24, 2021 | A vulnerability in the ingress traffic manager of Cisco IOS XE Software for Cisco Network Convergence System (NCS) 520 R... |
| CVE-2021-1392 | HIGH | 7.8 | 0.2% | Mar 24, 2021 | A vulnerability in the CLI command permissions of Cisco IOS and Cisco IOS XE Software could allow an authenticated, loca... |
| CVE-2021-1391 | MEDIUM | 6.7 | 0.3% | Mar 24, 2021 | A vulnerability in the dragonite debugger of Cisco IOS XE Software could allow an authenticated, local attacker to escal... |
| CVE-2021-1390 | MEDIUM | 6.7 | 0.3% | Mar 24, 2021 | A vulnerability in one of the diagnostic test CLI commands of Cisco IOS XE Software could allow an authenticated, local ... |
| CVE-2021-1385 | MEDIUM | 6.5 | 2.7% | Mar 24, 2021 | A vulnerability in the Cisco IOx application hosting environment of multiple Cisco platforms could allow an authenticate... |
| CVE-2021-1384 | HIGH | 7.2 | 35.4% | Mar 24, 2021 | A vulnerability in Cisco IOx application hosting environment of Cisco IOS XE Software could allow an authenticated, remo... |
| CVE-2021-1383 | MEDIUM | 6.7 | 0.6% | Mar 24, 2021 | Multiple vulnerabilities in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to acce... |
| CVE-2021-1382 | MEDIUM | 6.7 | 0.7% | Mar 24, 2021 | A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to inject arbitr... |
| CVE-2021-1377 | MEDIUM | 5.8 | 1.4% | Mar 24, 2021 | A vulnerability in Address Resolution Protocol (ARP) management of Cisco IOS Software and Cisco IOS XE Software could al... |
| CVE-2021-22169 | MEDIUM | 4.3 | 0.8% | Mar 24, 2021 | An issue was identified in GitLab EE 13.4 or later which leaked internal IP address via error messages. |
| CVE-2021-22193 | LOW | 3.5 | 1.0% | Mar 24, 2021 | An issue has been discovered in GitLab affecting all versions starting with 7.1. A member of a private group was able to... |
| CVE-2021-22192 | HIGH | 8.8 | 13.1% | Mar 24, 2021 | An issue has been discovered in GitLab CE/EE affecting all versions starting from 13.2 allowing unauthorized authenticat... |
| CVE-2021-22186 | MEDIUM | 4.9 | 0.9% | Mar 24, 2021 | An authorization issue in GitLab CE/EE version 9.4 and up allowed a group maintainer to modify group CI/CD variables whi... |
| CVE-2021-22185 | MEDIUM | 5.4 | 0.8% | Mar 24, 2021 | Insufficient input sanitization in wikis in GitLab version 13.8 and up allows an attacker to exploit a stored cross-site... |
| CVE-2021-22179 | MEDIUM | 5.4 | 0.9% | Mar 24, 2021 | A vulnerability was discovered in GitLab versions before 12.2. GitLab was vulnerable to a SSRF attack through the Outbou... |
| CVE-2021-22178 | MEDIUM | 5 | 1.1% | Mar 24, 2021 | An issue has been discovered in GitLab affecting all versions starting from 13.2. Gitlab was vulnerable to SRRF attack t... |
| CVE-2021-22176 | MEDIUM | 4.3 | 1.0% | Mar 24, 2021 | An issue has been discovered in GitLab affecting all versions starting with 3.0.1. Improper access control allows demote... |
| CVE-2021-29002 | MEDIUM | 5.4 | 0.8% | Mar 24, 2021 | A stored cross-site scripting (XSS) vulnerability in Plone CMS 5.2.3 exists in site-controlpanel via the "form.widgets.s... |
| CVE-2021-28362 | HIGH | 7.5 | 1.3% | Mar 24, 2021 | An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of invalid extension header... |
| CVE-2021-27320 | HIGH | 7.5 | 9.3% | Mar 24, 2021 | Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malic... |
| CVE-2021-27319 | HIGH | 7.5 | 7.8% | Mar 24, 2021 | Blind SQL injection in contactus.php in Doctor Appointment System 1.0 allows an unauthenticated attacker to insert malic... |
| CVE-2021-27316 | HIGH | 7.5 | 7.8% | Mar 24, 2021 | Blind SQL injection in contactus.php in doctor appointment system 1.0 allows an unauthenticated attacker to insert malic... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now