2021 CVE Vulnerabilities
23,468 CVEs published in 2021.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2021-21457 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources... |
| CVE-2021-21456 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated DIB file received from untrusted sources... |
| CVE-2021-21455 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated DIB file received from untrusted sources... |
| CVE-2021-21454 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated RLE file received from untrusted sources... |
| CVE-2021-21453 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated RLE file received from untrusted sources... |
| CVE-2021-21452 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated GIF file received from untrusted sources... |
| CVE-2021-21451 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SGI file received from untrusted sources... |
| CVE-2021-21450 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PSD file received from untrusted sources... |
| CVE-2021-21449 | HIGH | 8.8 | 1.2% | Jan 12, 2021 | SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated IFF file received from untrusted sources... |
| CVE-2021-21448 | MEDIUM | 6.5 | 0.3% | Jan 12, 2021 | SAP GUI for Windows, version - 7.60, allows an attacker to spoof logon credentials for Application Server ABAP backend s... |
| CVE-2021-21447 | MEDIUM | 5.4 | 0.5% | Jan 12, 2021 | SAP BusinessObjects Business Intelligence platform, versions 410, 420, allows an authenticated attacker to inject malici... |
| CVE-2021-21446 | HIGH | 7.5 | 1.4% | Jan 12, 2021 | SAP NetWeaver AS ABAP, versions 740, 750, 751, 752, 753, 754, 755, allows an unauthenticated attacker to prevent legitim... |
| CVE-2021-21445 | MEDIUM | 5.4 | 0.6% | Jan 12, 2021 | SAP Commerce Cloud, versions - 1808, 1811, 1905, 2005, 2011, allows an authenticated attacker to include invalidated dat... |
| CVE-2021-23240 | HIGH | 7.8 | 1.1% | Jan 12, 2021 | selinux_edit_copy_tfiles in sudoedit in Sudo before 1.9.5 allows a local unprivileged user to gain file ownership and es... |
| CVE-2021-23239 | LOW | 2.5 | 1.0% | Jan 12, 2021 | The sudoedit personality of Sudo before 1.9.5 may allow a local unprivileged user to perform arbitrary directory-existen... |
| CVE-2021-0322 | MEDIUM | 5 | 0.2% | Jan 11, 2021 | In onCreate of SlicePermissionActivity.java, there is a possible misleading string displayed due to improper input valid... |
| CVE-2021-0321 | MEDIUM | 5.5 | 0.2% | Jan 11, 2021 | In enforceDumpPermissionForPackage of ActivityManagerService.java, there is a possible way to determine if a package is ... |
| CVE-2021-0320 | MEDIUM | 4.7 | 0.1% | Jan 11, 2021 | In is_device_locked and set_device_locked of keystore_keymaster_enforcement.h, there is a possible bypass of lockscreen ... |
| CVE-2021-0319 | HIGH | 7.3 | 0.3% | Jan 11, 2021 | In checkCallerIsSystemOr of CompanionDeviceManagerService.java, there is a possible way to get a nearby Bluetooth device... |
| CVE-2021-0318 | HIGH | 7.8 | 0.3% | Jan 11, 2021 | In appendEventsToCacheLocked of SensorEventConnection.cpp, there is a possible out of bounds write due to a use-after-fr... |
| CVE-2021-0317 | HIGH | 7.8 | 0.2% | Jan 11, 2021 | In createOrUpdate of Permission.java and related code, there is possible permission escalation due to a logic error. Thi... |
| CVE-2021-0316 | CRITICAL | 9.8 | 3.1% | Jan 11, 2021 | In avrc_pars_vendor_cmd of avrc_pars_tg.cc, there is a possible out of bounds write due to a missing bounds check. This ... |
| CVE-2021-0315 | HIGH | 7.3 | 0.3% | Jan 11, 2021 | In onCreate of GrantCredentialsPermissionActivity.java, there is a possible way to convince the user to grant an app acc... |
| CVE-2021-0313 | HIGH | 7.5 | 1.7% | Jan 11, 2021 | In isWordBreakAfter of LayoutUtils.cpp, there is a possible way to slow or crash a TextView due to improper input valida... |
| CVE-2021-0312 | MEDIUM | 6.5 | 1.1% | Jan 11, 2021 | In WAVSource::read of WAVExtractor.cpp, there is a possible out of bounds write due to an integer overflow. This could l... |
Check if your code is affected by 2021 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now