CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2021-43236

    Last Modified: 21 Nov 2024

    Microsoft Message Queuing Information Disclosure Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43234

    Last Modified: 21 Nov 2024

    Windows Fax Service Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.5
    High

    CVE-2021-43233

    Last Modified: 21 Nov 2024

    Remote Desktop Client Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43231

    Last Modified: 21 Nov 2024

    Windows NTFS Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43232

    Last Modified: 21 Nov 2024

    Windows Event Tracing Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43230

    Last Modified: 21 Nov 2024

    Windows NTFS Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43229

    Last Modified: 21 Nov 2024

    Windows NTFS Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.5
    High

    CVE-2021-43228

    Last Modified: 21 Nov 2024

    SymCrypt Denial of Service Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43226

    Last Modified: 30 Oct 2025

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    5.5
    Medium

    CVE-2021-43227

    Last Modified: 21 Nov 2024

    Storage Spaces Controller Information Disclosure Vulnerability

    Published: 15 Dec 2021
    7.5
    High

    CVE-2021-43225

    Last Modified: 21 Nov 2024

    Bot Framework SDK Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    5.5
    Medium

    CVE-2021-43224

    Last Modified: 21 Nov 2024

    Windows Common Log File System Driver Information Disclosure Vulnerability

    Published: 15 Dec 2021
    7.5
    High

    CVE-2021-43222

    Last Modified: 21 Nov 2024

    Microsoft Message Queuing Information Disclosure Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43223

    Last Modified: 21 Nov 2024

    Windows Remote Access Connection Manager Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.4
    High

    CVE-2021-43219

    Last Modified: 21 Nov 2024

    DirectX Graphics Kernel File Denial of Service Vulnerability

    Published: 15 Dec 2021
    8.1
    High

    CVE-2021-43217

    Last Modified: 21 Nov 2024

    Windows Encrypting File System (EFS) Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    6.5
    Medium

    CVE-2021-43216

    Last Modified: 21 Nov 2024

    Microsoft Local Security Authority (LSA) Server Information Disclosure Vulnerability

    Published: 15 Dec 2021
    9.8
    Critical

    CVE-2021-43215

    Last Modified: 21 Nov 2024

    iSNS Server Memory Corruption Vulnerability Can Lead to Remote Code Execution

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43214

    Last Modified: 21 Nov 2024

    Web Media Extensions Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-43207

    Last Modified: 21 Nov 2024

    Windows Common Log File System Driver Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    8
    High

    CVE-2021-42320

    Last Modified: 21 Nov 2024

    Microsoft SharePoint Server Spoofing Vulnerability

    Published: 15 Dec 2021
    8.8
    High

    CVE-2021-42315

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    8.8
    High

    CVE-2021-42314

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    10
    Critical

    CVE-2021-42313

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-42312

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    8.1
    High

    CVE-2021-42310

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    10
    Critical

    CVE-2021-42311

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    8.8
    High

    CVE-2021-42309

    Last Modified: 21 Nov 2024

    Microsoft SharePoint Server Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    5.5
    Medium

    CVE-2021-42295

    Last Modified: 19 May 2026

    Visual Basic for Applications Information Disclosure Vulnerability

    Published: 15 Dec 2021
    6.5
    Medium

    CVE-2021-42293

    Last Modified: 19 May 2026

    Microsoft Jet Red Database Engine and Access Connectivity Engine Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.2
    High

    CVE-2021-42294

    Last Modified: 21 Nov 2024

    Microsoft SharePoint Server Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    8.8
    High

    CVE-2021-41365

    Last Modified: 21 Nov 2024

    Microsoft Defender for IoT Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-41360

    Last Modified: 21 Nov 2024

    HEVC Video Extensions Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-40453

    Last Modified: 21 Nov 2024

    HEVC Video Extensions Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-41333

    Last Modified: 21 Nov 2024

    Windows Print Spooler Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-40452

    Last Modified: 21 Nov 2024

    HEVC Video Extensions Remote Code Execution Vulnerability

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-40441

    Last Modified: 21 Nov 2024

    Windows Media Center Elevation of Privilege Vulnerability

    Published: 15 Dec 2021
    5.4
    Medium

    CVE-2021-4116

    Last Modified: 21 Nov 2024

    yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

    Published: 15 Dec 2021
    4.3
    Medium

    CVE-2021-4111

    Last Modified: 21 Nov 2024

    yetiforcecrm is vulnerable to Business Logic Errors

    Published: 15 Dec 2021
    7.5
    High

    CVE-2021-45043

    Last Modified: 21 Nov 2024

    HD-Network Real-time Monitoring System 2.0 allows ../ directory traversal to read /etc/shadow via the /language/lang s_Language parameter.

    Published: 15 Dec 2021
    7.5
    High

    CVE-2019-19138

    Last Modified: 21 Nov 2024

    Ivanti Workspace Control before 10.4.50.0 allows attackers to degrade integrity.

    Published: 15 Dec 2021
    7.8
    High

    CVE-2020-23545

    Last Modified: 21 Nov 2024

    IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531.

    Published: 15 Dec 2021
    6.1
    Medium

    CVE-2021-26787

    Last Modified: 5 Jul 2026

    A cross site scripting (XSS) vulnerability in Genesys Workforce Management 8.5.214.20 can occur (during record deletion) via the Time-off parameter.

    Published: 15 Dec 2021
    6.1
    Medium

    CVE-2021-36450

    Last Modified: 4 Jul 2026

    Verint Workforce Optimization (WFO) 15.2.8.10048 allows XSS via the control/my_notifications NEWUINAV parameter.

    Published: 15 Dec 2021
    4.8
    Medium

    CVE-2021-38701

    Last Modified: 21 Nov 2024

    Certain Motorola Solutions Avigilon devices allow XSS in the administrative UI. This affects T200/201 before 4.10.0.68; T290 before 4.4.0.80; T008 before 2.2.0.86; T205 before 4.12.0.62; T204 before 3.28.0.166; and T100, T101, T102, and T103 before 2.6.0.180.

    Published: 15 Dec 2021
    6.8
    Medium

    CVE-2021-40170

    Last Modified: 21 Nov 2024

    An RF replay attack vulnerability in the SecuritasHome home alarm system, version HPGW-G 0.0.2.23F BG_U-ITR-F1-BD_BL.A30.20181117, allows an attacker to trigger arbitrary system functionality by replaying previously recorded signals. This lets an adversary, among other things, disarm an armed system.

    Published: 15 Dec 2021
    5.3
    Medium

    CVE-2021-40171

    Last Modified: 21 Nov 2024

    The absence of notifications regarding an ongoing RF jamming attack in the SecuritasHome home alarm system, version HPGW-G 0.0.2.23F BG_U-ITR-F1-BD_BL.A30.20181117, allows an attacker to block legitimate traffic while not alerting the owner of the system.

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-40826

    Last Modified: 21 Nov 2024

    Clementine Music Player through 1.3.1 is vulnerable to a User Mode Write Access Violation, affecting the MP3 file parsing functionality at clementine+0x3aa207. The vulnerability is triggered when the user opens a crafted MP3 file or loads a remote stream URL that is mishandled by Clementine. Attackers could exploit this issue to cause a crash (DoS) of the clementine.exe process or achieve arbitrary code execution in the context of the current logged-in Windows user.

    Published: 15 Dec 2021
    7.8
    High

    CVE-2021-40827

    Last Modified: 21 Nov 2024

    Clementine Music Player through 1.3.1 (when a GLib 2.0.0 DLL is used) is vulnerable to a Read Access Violation on Block Data Move, affecting the MP3 file parsing functionality at memcpy+0x265. The vulnerability is triggered when the user opens a crafted MP3 file or loads a remote stream URL that is mishandled by Clementine. Attackers could exploit this issue to cause a crash (DoS) of the clementine.exe process or achieve arbitrary code execution in the context of the current logged-in Windows user.

    Published: 15 Dec 2021
    9.8
    Critical

    CVE-2021-41560

    Last Modified: 21 Nov 2024

    OpenCATS through 0.9.6 allows remote attackers to execute arbitrary code by uploading an executable file via lib/FileUtility.php.

    Published: 15 Dec 2021