2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-10043CRITICAL9.8Module::Load versions before 0.22 for Perl allow arbitrary modules outside of @INC to be loaded. Module names starting ...
CVE-2011-10031Rejected reason: This CVE has the been REJECTED and will not be published by the CNA.
CVE-2011-10041CRITICAL9.3Uploadify WordPress plugin versions up to and including 1.0 contain an arbitrary file upload vulnerability in process_up...
CVE-2011-10034MEDIUM6.9AUTOMGEN versions up to and including 8.0.0.7 (also referenced as 8.022) contain a vulnerability in that project file ha...
CVE-2011-10040MEDIUM5.4Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the link-handling functions used b...
CVE-2011-10039MEDIUM5.4Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the Alert Heatmap report and the “...
CVE-2011-10038MEDIUM5.4Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the recurring downtime script of t...
CVE-2011-10037MEDIUM5.4Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the handling of xiwindow variables...
CVE-2011-10036MEDIUM5.4Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the handling of the "backend_url" ...
CVE-2011-10035HIGH7Nagios XI versions prior to 2011R1.9 contain privilege escalation vulnerabilities in the scripts that install or update ...
CVE-2011-10033CRITICAL9.3The WordPress plugin is-human <= v1.4.2 contains an eval injection vulnerability in /is-human/engine.php that can be tri...
CVE-2011-20002HIGH8.3A vulnerability has been identified in SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants) (All versions < V2.0.2), SI...
CVE-2011-20001HIGH8.7A vulnerability has been identified in SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants) (All versions < V2.0.3), SI...
CVE-2011-10032CRITICAL9.3Sunway ForceControl version 6.1 SP3 and earlier contains a stack-based buffer overflow vulnerability in the SNMP NetDBSe...
CVE-2011-10030HIGH8.4Foxit PDF Reader <  4.3.1.0218 exposes a JavaScript API function, createDataObject(), that allows untrusted PDF content ...
CVE-2011-10029HIGH8.7Solar FTP Server fails to properly handle format strings passed to the USER command. When a specially crafted string con...
CVE-2011-10028HIGH8.7The RealNetworks RealArcade platform includes an ActiveX control (InstallerDlg.dll, version 2.6.0.445) that exposes a me...
CVE-2011-10027HIGH8.4AOL Desktop 9.6 contains a buffer overflow vulnerability in its Tool\rich.rct component when parsing .rtx files. By embe...
CVE-2011-10026CRITICAL9.8Spreecommerce versions prior to 0.50.x contain a remote command execution vulnerability in the API's search functionalit...
CVE-2011-10025HIGH8.5Subtitle Processor 7.7.1 contains a buffer overflow vulnerability in its .m3u file parser. When a crafted playlist file ...
CVE-2011-10024HIGH8.4MJM Core Player (likely now referred to as MJM Player) 2011 is vulnerable to a stack-based buffer overflow when parsing ...
CVE-2011-10023HIGH8.4MJM QuickPlayer (also known as MJM Player) version 2010 contains a stack-based buffer overflow vulnerability triggered b...
CVE-2011-10022HIGH8.6SPlayer version 3.7 and earlier is vulnerable to a stack-based buffer overflow when processing HTTP responses containing...
CVE-2011-10021HIGH8.4Magix Musik Maker 16 is vulnerable to a stack-based buffer overflow due to improper handling of .mmm arrangement files. ...
CVE-2011-10020HIGH8.7Kaillera Server version 0.86 is vulnerable to a denial-of-service condition triggered by sending a malformed UDP packet ...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now