2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1145 | HIGH | 7.8 | 0.4% | Nov 14, 2019 | The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a ... |
| CVE-2011-1136 | MEDIUM | 4.7 | 0.5% | Nov 14, 2019 | In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to th... |
| CVE-2011-1070 | HIGH | 7.8 | 0.4% | Nov 14, 2019 | v86d before 0.1.10 do not verify if received netlink messages are sent by the kernel. This could allow unprivileged user... |
| CVE-2011-0544 | MEDIUM | 6.1 | 0.7% | Nov 14, 2019 | phpbb 3.0.x-3.0.6 has an XSS vulnerability via the [flash] BB tag. |
| CVE-2011-4972 | HIGH | 7.5 | 1.7% | Nov 13, 2019 | hook_file_download in the CKEditor module 7.x-1.4 for Drupal does not properly restrict access to private files, which a... |
| CVE-2011-3586 | — | — | — | Nov 13, 2019 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-3504. Reason: This candidate is a duplicate of C... |
| CVE-2011-1803 | MEDIUM | 6.5 | 0.5% | Nov 12, 2019 | An issue exists in third_party/WebKit/Source/WebCore/svg/animation/SVGSMILElement.h in WebKit in Google Chrome before Bl... |
| CVE-2011-1802 | MEDIUM | 6.5 | 0.6% | Nov 12, 2019 | WebKit in Google Chrome before Blink M11 and M12 does not properly handle counter nodes, which allows remote attackers t... |
| CVE-2011-2334 | MEDIUM | 6.5 | 0.5% | Nov 12, 2019 | Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements wit... |
| CVE-2011-2335 | HIGH | 7.5 | 0.6% | Nov 12, 2019 | A double-free vulnerability exists in WebKit in Google Chrome before Blink M12 in the WebCore::CSSSelector function. |
| CVE-2011-3618 | HIGH | 7.8 | 0.4% | Nov 12, 2019 | atop: symlink attack possible due to insecure tempfile handling |
| CVE-2011-5271 | MEDIUM | 5.5 | 0.5% | Nov 12, 2019 | Pacemaker before 1.1.6 configure script creates temporary files insecurely |
| CVE-2011-3370 | MEDIUM | 6.1 | 1.0% | Nov 12, 2019 | statusnet before 0.9.9 has XSS |
| CVE-2011-2936 | CRITICAL | 9.8 | 1.5% | Nov 12, 2019 | Elgg through 1.7.10 has a SQL injection vulnerability |
| CVE-2011-2935 | MEDIUM | 6.1 | 1.1% | Nov 12, 2019 | Elgg through 1.7.10 has XSS |
| CVE-2011-2897 | CRITICAL | 9.8 | 1.9% | Nov 12, 2019 | gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validati... |
| CVE-2011-2337 | CRITICAL | 9.8 | 0.8% | Nov 7, 2019 | A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms. |
| CVE-2011-2336 | MEDIUM | 6.5 | 0.6% | Nov 7, 2019 | An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that sign... |
| CVE-2011-2807 | MEDIUM | 6.5 | 0.5% | Nov 7, 2019 | Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13. |
| CVE-2011-2353 | MEDIUM | 6.5 | 0.7% | Nov 7, 2019 | Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDoc... |
| CVE-2011-2808 | MEDIUM | 6.5 | 1.0% | Nov 6, 2019 | A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with... |
| CVE-2011-1298 | HIGH | 7.5 | 0.9% | Nov 6, 2019 | An Integer Overflow exists in WebKit in Google Chrome before Blink M11 in the macOS WebCore::GraphicsContext::fillRect f... |
| CVE-2011-4904 | MEDIUM | 6.5 | 1.1% | Nov 6, 2019 | TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote at... |
| CVE-2011-4903 | MEDIUM | 6.1 | 0.8% | Nov 6, 2019 | Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to... |
| CVE-2011-4902 | MEDIUM | 6.5 | 1.0% | Nov 6, 2019 | TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to delete arbitrary files on the... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now