2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-1145HIGH7.8The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a ...
CVE-2011-1136MEDIUM4.7In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to th...
CVE-2011-1070HIGH7.8v86d before 0.1.10 do not verify if received netlink messages are sent by the kernel. This could allow unprivileged user...
CVE-2011-0544MEDIUM6.1phpbb 3.0.x-3.0.6 has an XSS vulnerability via the [flash] BB tag.
CVE-2011-4972HIGH7.5hook_file_download in the CKEditor module 7.x-1.4 for Drupal does not properly restrict access to private files, which a...
CVE-2011-3586Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-3504. Reason: This candidate is a duplicate of C...
CVE-2011-1803MEDIUM6.5An issue exists in third_party/WebKit/Source/WebCore/svg/animation/SVGSMILElement.h in WebKit in Google Chrome before Bl...
CVE-2011-1802MEDIUM6.5WebKit in Google Chrome before Blink M11 and M12 does not properly handle counter nodes, which allows remote attackers t...
CVE-2011-2334MEDIUM6.5Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements wit...
CVE-2011-2335HIGH7.5A double-free vulnerability exists in WebKit in Google Chrome before Blink M12 in the WebCore::CSSSelector function.
CVE-2011-3618HIGH7.8atop: symlink attack possible due to insecure tempfile handling
CVE-2011-5271MEDIUM5.5Pacemaker before 1.1.6 configure script creates temporary files insecurely
CVE-2011-3370MEDIUM6.1statusnet before 0.9.9 has XSS
CVE-2011-2936CRITICAL9.8Elgg through 1.7.10 has a SQL injection vulnerability
CVE-2011-2935MEDIUM6.1Elgg through 1.7.10 has XSS
CVE-2011-2897CRITICAL9.8gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validati...
CVE-2011-2337CRITICAL9.8A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.
CVE-2011-2336MEDIUM6.5An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that sign...
CVE-2011-2807MEDIUM6.5Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13.
CVE-2011-2353MEDIUM6.5Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDoc...
CVE-2011-2808MEDIUM6.5A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with...
CVE-2011-1298HIGH7.5An Integer Overflow exists in WebKit in Google Chrome before Blink M11 in the macOS WebCore::GraphicsContext::fillRect f...
CVE-2011-4904MEDIUM6.5TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote at...
CVE-2011-4903MEDIUM6.1Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4902MEDIUM6.5TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to delete arbitrary files on the...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now