2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2021-30300HIGH7.5Possible denial of service due to incorrectly decoding hex data for the SIB2 OTA message and assigning a garbage value t...
CVE-2021-30287HIGH7.5Possible assertion due to improper validation of symbols configured for PDCCH monitoring in Snapdragon Auto, Snapdragon ...
CVE-2021-30285HIGH8.8Improper validation of memory region in Hypervisor can lead to incorrect region mapping in Snapdragon Auto, Snapdragon C...
CVE-2021-43860HIGH8.6Flatpak is a Linux application sandboxing and distribution framework. Prior to versions 1.12.3 and 1.10.6, Flatpak doesn...
CVE-2021-42559HIGH8.8An issue was discovered in CALDERA 2.8.1. It contains multiple startup "requirements" that execute commands when startin...
CVE-2021-41597HIGH8.8SuiteCRM through 7.11.21 is vulnerable to CSRF, with resultant remote code execution, via the UpgradeWizard functionalit...
CVE-2021-42562HIGH8.1An issue was discovered in CALDERA 2.8.1. It does not properly segregate user privileges, resulting in non-admin users h...
CVE-2021-42561HIGH8.8An issue was discovered in CALDERA 2.8.1. When activated, the Human plugin passes the unsanitized name parameter to a py...
CVE-2021-42560HIGH8.8An issue was discovered in CALDERA 2.9.0. The Debrief plugin receives base64 encoded "SVG" parameters when generating a ...
CVE-2021-36417HIGH7.8A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, whic...
CVE-2021-45445HIGH7.5Unisys ClearPath MCP TCP/IP Networking Services 59.1, 60.0, and 62.0 has an Infinite Loop.
CVE-2021-44652HIGH7.8Zoho ManageEngine O365 Manager Plus before Build 4416 allows remote code execution via BCP file overwrite through the Ch...
CVE-2021-44651HIGH8.8Zoho ManageEngine CloudSecurityPlus before Build 4117 allows remote code execution through the updatePersonalizeSettings...
CVE-2021-4080HIGH8.8crater is vulnerable to Unrestricted Upload of File with Dangerous Type
CVE-2021-44650HIGH7.2Zoho ManageEngine M365 Manager Plus before Build 4419 allows remote command execution when updating proxy settings throu...
CVE-2021-44648HIGH8.8GNOME gdk-pixbuf 2.42.6 is vulnerable to a heap-buffer overflow vulnerability when decoding the lzw compressed stream of...
CVE-2021-3852HIGH7.5growi is vulnerable to Authorization Bypass Through User-Controlled Key
CVE-2021-43999HIGH8.8Apache Guacamole 1.2.0 and 1.3.0 do not properly validate responses received from a SAML identity provider. If SAML supp...
CVE-2021-43973HIGH8.8An unrestricted file upload vulnerability in /UploadPsIcon.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated ...
CVE-2021-43971HIGH8.8A SQL injection vulnerability in /mobile/SelectUsers.jsp in SysAid ITIL 20.4.74 b10 allows a remote authenticated attack...
CVE-2021-43055HIGH8.8The eFTL Server component of TIBCO Software Inc.'s TIBCO eFTL - Community Edition, TIBCO eFTL - Developer Edition, and T...
CVE-2021-43054HIGH8.8The eFTL Server component of TIBCO Software Inc.'s TIBCO eFTL - Community Edition, TIBCO eFTL - Developer Edition, and T...
CVE-2021-43053HIGH7.5The Realm Server component of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TI...
CVE-2021-43052HIGH7.5The Realm Server component of TIBCO Software Inc.'s TIBCO FTL - Community Edition, TIBCO FTL - Developer Edition, and TI...
CVE-2021-34704HIGH7.5A vulnerability in the web services interface of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Th...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now