2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-3692NetSaro Enterprise Messenger Server 2.0 stores cleartext console credentials in configuration.xml, which allows local us...
CVE-2011-3691Untrusted search path vulnerability in Foxit Reader before 5.0.2.0718 allows local users to gain privileges via a Trojan...
CVE-2011-3690Untrusted search path vulnerability in PlotSoft PDFill PDF Editor 8.0 allows local users to gain privileges via a Trojan...
CVE-2011-3689Cross-site scripting (XSS) vulnerability in Licenses.html in Wibu-Systems CodeMeter WebAdmin 3.30 and 4.30 allows remote...
CVE-2011-3688Multiple SQL injection vulnerabilities in Sonexis ConferenceManager 9.3.14.0 allow remote attackers to execute arbitrary...
CVE-2011-3687Multiple cross-site scripting (XSS) vulnerabilities in Sonexis ConferenceManager 9.2.11.0 allow remote attackers to inje...
CVE-2011-3686Multiple cross-site scripting (XSS) vulnerabilities in myAddressBook.asp in Sonexis ConferenceManager 9.2.11.0 and 9.3.1...
CVE-2011-3685Tembria Server Monitor before 6.0.5 Build 2252 uses a substitution cipher to encrypt application credentials, which allo...
CVE-2011-3684Multiple cross-site scripting (XSS) vulnerabilities in Tembria Server Monitor before 6.0.5 Build 2252 allow remote attac...
CVE-2011-3645Newgen OmniDocs allows remote attackers to bypass intended access restrictions via (1) a modified FolderRights parameter...
CVE-2011-3826Zikula 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals ...
CVE-2011-3825Zend Framework 1.11.3 in Zend Server CE 5.1.0 allows remote attackers to obtain sensitive information via a direct reque...
CVE-2011-3824Your Own URL Shortener (YOURLS) 1.5 allows remote attackers to obtain sensitive information via a direct request to a .p...
CVE-2011-3823Yamamah 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals t...
CVE-2011-3822XOOPS 2.5.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals t...
CVE-2011-3821xajax 0.6 beta1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which revea...
CVE-2011-3820WSN Software 6.0.6 allows remote attackers to obtain sensitive information via a direct request to a .php file, which re...
CVE-2011-3819WoW Server Status 4.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which...
CVE-2011-3818WordPress 2.9.2 and 3.0.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, w...
CVE-2011-3817Website Baker 2.8.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which r...
CVE-2011-3816WEBinsta mailing list manager 1.3e allows remote attackers to obtain sensitive information via a direct request to a .ph...
CVE-2011-3815WeBid 1.0.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals t...
CVE-2011-3814WebCalendar 1.2.3, and other versions before 1.2.5, allows remote attackers to obtain sensitive information via a direct...
CVE-2011-3813Virtual War (aka VWar) 1.5.0r15 allows remote attackers to obtain sensitive information via a direct request to a .php f...
CVE-2011-3812Vanilla 2.0.16 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveal...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now