2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-37316 | HIGH | 7.5 | 1.0% | Feb 3, 2023 | SQL injection vulnerability in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634 allows remot... |
| CVE-2021-37315 | CRITICAL | 9.1 | 1.1% | Feb 3, 2023 | Incorrect Access Control issue discoverd in Cloud Disk in ASUS RT-AC68U router firmware version before 3.0.0.4.386.41634... |
| CVE-2021-37311 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Buffer Overflow vulnerability in fcitx5 5.0.8 allows attackers to cause a denial of service via crafted message to the a... |
| CVE-2021-37306 | HIGH | 7.5 | 0.8% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi... |
| CVE-2021-37305 | HIGH | 7.5 | 3.5% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 and earlier allows remote attackers to gain escalated privilege and vi... |
| CVE-2021-37304 | HIGH | 7.5 | 4.0% | Feb 3, 2023 | An Insecure Permissions issue in jeecg-boot 2.4.5 allows unauthenticated remote attackers to gain escalated privilege an... |
| CVE-2021-37234 | MEDIUM | 6.5 | 0.4% | Feb 3, 2023 | Incorrect Access Control vulnerability in Modern Honey Network commit 0abf0db9cd893c6d5c727d036e1f817c02de4c7b allows re... |
| CVE-2021-36712 | MEDIUM | 5.4 | 0.5% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in yzmcms 6.1 allows attackers to steal user cookies via image clipping functio... |
| CVE-2021-36570 | HIGH | 8.8 | 0.7% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to... |
| CVE-2021-36569 | HIGH | 8.8 | 0.4% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in FUEL-CMS 1.4.13 allows remote attackers to run arbitrary code via post ID to... |
| CVE-2021-36546 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Incorrect Access Control issue discovered in KiteCMS 1.1 allows remote attackers to view sensitive information via path ... |
| CVE-2021-36545 | MEDIUM | 5.4 | 0.5% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in tpcms 3.2 allows remote attackers to run arbitrary code via the cfg_copyrigh... |
| CVE-2021-36544 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Incorrect Access Control issue discovered in tpcms 3.2 allows remote attackers to view sensitive information via path in... |
| CVE-2021-36538 | MEDIUM | 5.4 | 0.6% | Feb 3, 2023 | Cross Site Scripting (XSS) vulnerability in Gurock TestRail before 7.1.2 allows remote authenticated attackers to run ar... |
| CVE-2021-36535 | MEDIUM | 5.5 | 0.4% | Feb 3, 2023 | Buffer Overflow vulnerability in Cesanta mJS 1.26 allows remote attackers to cause a denial of service via crafted .js f... |
| CVE-2021-36532 | HIGH | 8.1 | 0.8% | Feb 3, 2023 | Race condition vulnerability discovered in portfolioCMS 1.0 allows remote attackers to run arbitrary code via fileExt pa... |
| CVE-2021-36503 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in native-php-cms 1.0 allows remote attackers to run arbitrary SQL commands via the cat para... |
| CVE-2021-36493 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | Buffer Overflow vulnerability in pdfimages in xpdf 4.03 allows attackers to crash the application via crafted command. |
| CVE-2021-36489 | MEDIUM | 6.5 | 0.6% | Feb 3, 2023 | Buffer Overflow vulnerability in Allegro through 5.2.6 allows attackers to cause a denial of service via crafted PCX/TGA... |
| CVE-2021-36484 | CRITICAL | 9.8 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in JIZHICMS 1.9.5 allows attackers to run arbitrary SQL commands via add or edit article pag... |
| CVE-2021-36444 | HIGH | 8.8 | 0.6% | Feb 3, 2023 | Cross Site Request Forgery (CSRF) vulnerability in imcat 5.4 allows remote attackers to gain escalated privileges via fl... |
| CVE-2021-36443 | HIGH | 8.8 | 0.6% | Feb 3, 2023 | Cross Site Request Forgery vulnerability in imcat 5.4 allows remote attackers to escalate privilege via lack of token ve... |
| CVE-2021-36434 | CRITICAL | 9.1 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
| CVE-2021-36433 | CRITICAL | 9.1 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
| CVE-2021-36432 | HIGH | 7.5 | 0.9% | Feb 3, 2023 | SQL injection vulnerability in jocms 0.8 allows remote attackers to run arbitrary SQL commands and view sentivie informa... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now