2021 CVE Vulnerabilities

23,468 CVEs published in 2021.

CVE IDSeverityCVSSDescription
CVE-2021-20358MEDIUM6.5IBM Cloud Pak for Automation 20.0.3, 20.0.2-IF002 stores potentially sensitive information in clear text in API connecti...
CVE-2021-21436MEDIUM4.3Agents are able to see and link Config Items without permissions, which are defined in General Catalog. This issue affec...
CVE-2021-21435MEDIUM6.5Article Bcc fields and agent personal information are shown when customer prints the ticket (PDF) via external interface...
CVE-2021-21434MEDIUM4.8Survey administrator can craft a survey in such way that malicious code can be executed in the agent interface (i.e. ano...
CVE-2021-26754CRITICAL9.8wpDataTables before 3.4.1 mishandles order direction for server-side tables, aka admin-ajax.php?action=get_wdtable order...
CVE-2021-22161MEDIUM6.5In OpenWrt 19.07.x before 19.07.7, when IPv6 is used, a routing loop can occur that generates excessive network traffic ...
CVE-2021-26843HIGH7.5An issue was discovered in sthttpd through 2.27.1. On systems where the strcpy function is implemented with memcpy, the ...
CVE-2021-3122CRITICAL9.8CMCAgent in NCR Command Center Agent 16.3 on Aloha POS/BOH servers permits the submission of a runCommand parameter (wit...
CVE-2021-26723MEDIUM6.1Jenzabar 9.2.x through 9.2.2 allows /ics?tool=search&query= XSS.
CVE-2021-22305LOW3.3There is a buffer overflow vulnerability in Mate 30 10.1.0.126(C00E125R5P3). A module does not verify the some input whe...
CVE-2021-22304LOW3.3There is a use after free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module may refer to some memory after it ...
CVE-2021-22302HIGH7.1There is an out-of-bound read vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). A module does not verify the some input...
CVE-2021-22293HIGH7.5Some Huawei products have an inconsistent interpretation of HTTP requests vulnerability. Attackers can exploit this vuln...
CVE-2021-22292HIGH7.5There is a denial of service (DoS) vulnerability in eCNS280 versions V100R005C00, V100R005C10. Due to a design defect, r...
CVE-2021-22500MEDIUM6.5Cross Site Request Forgery vulnerability in Micro Focus Application Performance Management product, affecting versions 9...
CVE-2021-22299HIGH7.8There is a local privilege escalation vulnerability in some Huawei products. A local, authenticated attacker could craft...
CVE-2021-22298MEDIUM6.5There is a logic vulnerability in Huawei Gauss100 OLTP Product. An attacker with certain permissions could perform speci...
CVE-2021-22499MEDIUM4.8Persistent Cross-Site scripting vulnerability in Micro Focus Application Performance Management product, affecting versi...
CVE-2021-22306MEDIUM4.6There is an out-of-bound read vulnerability in Mate 30 10.0.0.182(C00E180R6P2). A module does not verify the some input ...
CVE-2021-22303LOW3.3There is a pointer double free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). There is a lack of muti-thread protect...
CVE-2021-22300MEDIUM4.1There is an information leak vulnerability in eCNS280_TD versions V100R005C00 and V100R005C10. A command does not have t...
CVE-2021-22307MEDIUM5.5There is a weak algorithm vulnerability in Mate 3010.0.0.203(C00E201R7P2). The protection is insufficient for the module...
CVE-2021-22301MEDIUM6.7Mate 30 10.0.0.203(C00E201R7P2) have a buffer overflow vulnerability. After obtaining the root permission, an attacker c...
CVE-2021-20176MEDIUM5.5A divide-by-zero flaw was found in ImageMagick 6.9.11-57 and 7.0.10-57 in gem.c. This flaw allows an attacker who submit...
CVE-2021-3229HIGH7.5Denial of service in ASUSWRT ASUS RT-AX3000 firmware versions 3.0.0.4.384_10177 and earlier versions allows an attacker ...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now