2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-27232 | HIGH | 8.8 | 1.7% | Feb 16, 2021 | The RTSPLive555.dll ActiveX control in Pelco Digital Sentry Server 7.18.72.11464 has a SetCameraConnectionParameter stac... |
| CVE-2021-25648 | CRITICAL | 9.8 | 1.2% | Feb 16, 2021 | Mobile application "Testes de Codigo" 11.4 and prior allows an attacker to gain access to the administrative interface a... |
| CVE-2021-27236 | CRITICAL | 9.8 | 2.1% | Feb 16, 2021 | An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. getfile.asp allows Unauthenticated Local File Inclusion,... |
| CVE-2021-27235 | MEDIUM | 4.9 | 0.8% | Feb 16, 2021 | An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. On the admin portal of the web application, there is a f... |
| CVE-2021-27234 | CRITICAL | 9.8 | 1.0% | Feb 16, 2021 | An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. The web application suffers from SQL injection on Adminl... |
| CVE-2021-27233 | MEDIUM | 4.9 | 0.5% | Feb 16, 2021 | An issue was discovered in Mutare Voice (EVM) 3.x before 3.3.8. On the admin portal of the web application, password inf... |
| CVE-2021-27231 | MEDIUM | 5.4 | 1.4% | Feb 16, 2021 | Hestia Control Panel 1.3.5 and below, in a shared-hosting environment, sometimes allows remote authenticated users to cr... |
| CVE-2021-27229 | HIGH | 8.8 | 3.2% | Feb 16, 2021 | Mumble before 1.3.4 allows remote code execution if a victim navigates to a crafted URL on a server list and clicks on t... |
| CVE-2021-21511 | HIGH | 8.1 | 1.0% | Feb 15, 2021 | Dell EMC Avamar Server, versions 19.3 and 19.4 contain an Improper Authorization vulnerability in the web UI. A remote l... |
| CVE-2021-3239 | CRITICAL | 9.8 | 17.9% | Feb 15, 2021 | E-Learning System 1.0 suffers from an unauthenticated SQL injection vulnerability, which allows remote attackers to exec... |
| CVE-2021-26822 | CRITICAL | 9.8 | 4.8% | Feb 15, 2021 | Teachers Record Management System 1.0 is affected by a SQL injection vulnerability in 'searchteacher' POST parameter in ... |
| CVE-2021-26201 | CRITICAL | 9.8 | 2.2% | Feb 15, 2021 | The Login Panel of CASAP Automated Enrollment System 1.0 is vulnerable to SQL injection authentication bypass. An attack... |
| CVE-2021-26200 | CRITICAL | 9.8 | 2.2% | Feb 15, 2021 | The user area for Library System 1.0 is vulnerable to SQL injection where a user can bypass the authentication and login... |
| CVE-2021-27211 | HIGH | 7.5 | 3.2% | Feb 15, 2021 | steghide 0.5.1 relies on a certain 32-bit seed value, which makes it easier for attackers to detect hidden data. |
| CVE-2021-27201 | HIGH | 8.8 | 2.6% | Feb 15, 2021 | Endian Firewall Community (aka EFW) 3.3.2 allows remote authenticated users to execute arbitrary OS commands via shell m... |
| CVE-2021-3375 | CRITICAL | 9.8 | 3.5% | Feb 15, 2021 | ActivePresenter 6.1.6 is affected by a memory corruption vulnerability that may result in a denial of service (DoS) or a... |
| CVE-2021-27219 | HIGH | 7.5 | 3.0% | Feb 15, 2021 | An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer ov... |
| CVE-2021-27218 | HIGH | 7.5 | 4.2% | Feb 15, 2021 | An issue was discovered in GNOME GLib before 2.66.7 and 2.67.x before 2.67.4. If g_byte_array_new_take() was called with... |
| CVE-2021-23338 | HIGH | 7.2 | 3.6% | Feb 15, 2021 | This affects all versions of package qlib. The workflow function in cli part of qlib was using an unsafe YAML load funct... |
| CVE-2021-25299 | MEDIUM | 6.1 | 97.7% | Feb 15, 2021 | Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/na... |
| CVE-2021-25298 | HIGH | 8.8 | 75.2% | Feb 15, 2021 | Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi... |
| CVE-2021-25297 | HIGH | 8.8 | 58.7% | Feb 15, 2021 | Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi... |
| CVE-2021-25296 | HIGH | 8.8 | 71.5% | Feb 15, 2021 | Nagios XI version xi-5.7.5 is affected by OS command injection. The vulnerability exists in the file /usr/local/nagiosxi... |
| CVE-2021-23337 | HIGH | 7.2 | 22.4% | Feb 15, 2021 | Lodash versions prior to 4.17.21 are vulnerable to Command Injection via the template function. |
| CVE-2021-23336 | MEDIUM | 5.9 | 36.0% | Feb 15, 2021 | The package python/cpython from 0 and before 3.6.13, from 3.7.0 and before 3.7.10, from 3.8.0 and before 3.8.8, from 3.9... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now