2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-23874 | HIGH | 7.8 | 1.0% | Feb 10, 2021 | Arbitrary Process Execution vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain ... |
| CVE-2021-23873 | MEDIUM | 6.1 | 0.7% | Feb 10, 2021 | Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.30 allows a local user to gain elevate... |
| CVE-2021-23883 | MEDIUM | 4.4 | 0.3% | Feb 10, 2021 | A Null Pointer Dereference vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Upd... |
| CVE-2021-23882 | MEDIUM | 4.4 | 0.3% | Feb 10, 2021 | Improper Access Control vulnerability in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update... |
| CVE-2021-23880 | MEDIUM | 4.4 | 0.3% | Feb 10, 2021 | Improper Access Control in attribute in McAfee Endpoint Security (ENS) for Windows prior to 10.7.0 February 2021 Update ... |
| CVE-2021-23878 | MEDIUM | 5 | 0.6% | Feb 10, 2021 | Clear text storage of sensitive Information in memory vulnerability in McAfee Endpoint Security (ENS) for Windows prior ... |
| CVE-2021-20654 | MEDIUM | 5.4 | 0.8% | Feb 10, 2021 | Wekan, open source kanban board system, between version 3.12 and 4.11, is vulnerable to multiple stored cross-site scrip... |
| CVE-2021-26959 | — | — | — | Feb 9, 2021 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-21299. Reason: This candidate is a duplicate of ... |
| CVE-2021-26958 | HIGH | 8.8 | 1.6% | Feb 9, 2021 | An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because transmutation... |
| CVE-2021-26957 | CRITICAL | 9.8 | 1.8% | Feb 9, 2021 | An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because there is an o... |
| CVE-2021-26956 | CRITICAL | 9.8 | 1.7% | Feb 9, 2021 | An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because bytes from an... |
| CVE-2021-26955 | CRITICAL | 9.8 | 1.7% | Feb 9, 2021 | An issue was discovered in the xcb crate through 2021-02-04 for Rust. It has a soundness violation because xcb::xproto::... |
| CVE-2021-26954 | MEDIUM | 5.3 | 1.4% | Feb 9, 2021 | An issue was discovered in the qwutils crate before 0.3.1 for Rust. When a Clone panic occurs, insert_slice_clone can pe... |
| CVE-2021-26953 | HIGH | 7.5 | 1.5% | Feb 9, 2021 | An issue was discovered in the postscript crate before 0.14.0 for Rust. It might allow attackers to obtain sensitive inf... |
| CVE-2021-26952 | HIGH | 7.5 | 1.6% | Feb 9, 2021 | An issue was discovered in the ms3d crate before 0.1.3 for Rust. It might allow attackers to obtain sensitive informatio... |
| CVE-2021-26951 | CRITICAL | 9.8 | 1.7% | Feb 9, 2021 | An issue was discovered in the calamine crate before 0.17.0 for Rust. It allows attackers to overwrite heap-memory locat... |
| CVE-2021-21502 | CRITICAL | 9.8 | 1.4% | Feb 9, 2021 | Dell PowerScale OneFS versions 8.1.0 – 9.1.0 contain a "use of SSH key past account expiration" vulnerability. A user on... |
| CVE-2021-21479 | CRITICAL | 9.1 | 8.7% | Feb 9, 2021 | In SCIMono before 0.0.19, it is possible for an attacker to inject and execute java expression compromising the availabi... |
| CVE-2021-21478 | MEDIUM | 6.1 | 0.9% | Feb 9, 2021 | SAP Web Dynpro ABAP allow an attacker to redirect users to a malicious site due to Reverse Tabnabbing vulnerabilities. |
| CVE-2021-21477 | CRITICAL | 9.9 | 29.8% | Feb 9, 2021 | SAP Commerce Cloud, versions - 1808,1811,1905,2005,2011, enables certain users with required privileges to edit drools r... |
| CVE-2021-21476 | MEDIUM | 6.1 | 0.8% | Feb 9, 2021 | SAP UI5 versions before 1.38.49, 1.52.49, 1.60.34, 1.71.31, 1.78.18, 1.84.5, 1.85.4, 1.86.1 allows an unauthenticated at... |
| CVE-2021-21475 | HIGH | 7.5 | 1.9% | Feb 9, 2021 | Under specific circumstances SAP Master Data Management, versions - 710, 710.750, allows an unauthorized attacker to exp... |
| CVE-2021-21474 | MEDIUM | 6.5 | 0.7% | Feb 9, 2021 | SAP HANA Database, versions - 1.0, 2.0, accepts SAML tokens with MD5 digest, an attacker who manages to obtain an MD5-di... |
| CVE-2021-21472 | HIGH | 8.8 | 1.2% | Feb 9, 2021 | SAP Software Provisioning Manager 1.0 (SAP NetWeaver Master Data Management Server 7.1) does not have an option to set p... |
| CVE-2021-21444 | MEDIUM | 6.1 | 0.8% | Feb 9, 2021 | SAP Business Objects BI Platform, versions - 410, 420, 430, allows multiple X-Frame-Options headers entries in the respo... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now