2021 CVE Vulnerabilities
23,445 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-26399 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26385 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26374 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26358 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26357 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-26319 | — | — | — | Jan 17, 2023 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate is unused by its CNA. Notes:... |
| CVE-2021-4313 | CRITICAL | 9.8 | 0.7% | Jan 16, 2023 | A vulnerability was found in NethServer phonenehome. It has been rated as critical. This issue affects the function get_... |
| CVE-2021-36204 | HIGH | 7.5 | 0.4% | Jan 13, 2023 | Under some circumstances an Insufficiently Protected Credentials vulnerability in Johnson Controls Metasys ADS/ADX/OAS 1... |
| CVE-2021-4312 | MEDIUM | 6.1 | 0.5% | Jan 13, 2023 | ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as problematic has been found in Th3-822 Rapidleech. This aff... |
| CVE-2021-46872 | MEDIUM | 6.1 | 0.5% | Jan 13, 2023 | An issue was discovered in Nim before 1.6.2. The RST module of the Nim language stdlib, as used in NimForum and other pr... |
| CVE-2021-46795 | MEDIUM | 4.7 | 0.1% | Jan 11, 2023 | A TOCTOU (time-of-check to time-of-use) vulnerability exists where an attacker may use a compromised BIOS to cause the T... |
| CVE-2021-46791 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Insufficient input validation during parsing of the System Management Mode (SMM) binary may allow a maliciously crafted ... |
| CVE-2021-46779 | HIGH | 7.1 | 0.2% | Jan 11, 2023 | Insufficient input validation in SVC_ECC_PRIMITIVE system call in a compromised user application or ABL may allow an att... |
| CVE-2021-46768 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Insufficient input validation in SEV firmware may allow an attacker to perform out-of-bounds memory reads within the ASP... |
| CVE-2021-46767 | MEDIUM | 6.1 | 0.3% | Jan 11, 2023 | Insufficient input validation in the ASP may allow an attacker with physical access, unauthorized write access to memory... |
| CVE-2021-26409 | HIGH | 7.8 | 0.2% | Jan 11, 2023 | Insufficient bounds checking in SEV-ES may allow an attacker to corrupt Reverse Map table (RMP) memory, potentially resu... |
| CVE-2021-26407 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | A randomly generated Initialization Vector (IV) may lead to a collision of IVs with the same key potentially resulting i... |
| CVE-2021-26404 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Improper input validation and bounds checking in SEV firmware may leak scratch buffer bytes leading to potential informa... |
| CVE-2021-26403 | MEDIUM | 6.5 | 0.1% | Jan 11, 2023 | Insufficient checks in SEV may lead to a malicious hypervisor disclosing the launch secret potentially resulting in comp... |
| CVE-2021-26402 | HIGH | 7.1 | 0.2% | Jan 11, 2023 | Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an a... |
| CVE-2021-26398 | HIGH | 7.8 | 0.2% | Jan 11, 2023 | Insufficient input validation in SYS_KEY_DERIVE system call in a compromised user application or ABL may allow an attack... |
| CVE-2021-26396 | MEDIUM | 4.4 | 0.1% | Jan 11, 2023 | Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity ... |
| CVE-2021-26355 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Insufficient fencing and checks in System Management Unit (SMU) may result in access to invalid message port registers t... |
| CVE-2021-26346 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an i... |
| CVE-2021-26343 | MEDIUM | 5.5 | 0.2% | Jan 11, 2023 | Insufficient validation in ASP BIOS and DRTM commands may allow malicious supervisor x86 software to disclose the conten... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now