2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2011-4367——Multiple directory traversal vulnerabilities in MyFaces JavaServer Faces (JSF) in Apache MyFaces Core 2.0.x before 2.0.1...
CVE-2011-2592——Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway E...
CVE-2011-3625——Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, all...
CVE-2011-5280——Multiple stack-based buffer overflows in BOINC 6.13.x allow remote attackers to cause a denial of service (crash) via a ...
CVE-2011-2198——The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated use...
CVE-2011-5249——Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (...
CVE-2011-4407——ppa.py in Software Properties before 0.81.13.3 does not validate the server certificate when downloading PPA GPG key fin...
CVE-2011-2514——The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-2513——The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-4970——Multiple SQL injection vulnerabilities in LCG Disk Pool Manager (DPM) before 1.8.6, as used in EGI UDM, allow remote att...
CVE-2011-3603——The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which...
CVE-2011-3602——Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local...
CVE-2011-3152——DistUpgrade/DistUpgradeFetcherCore.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x bef...
CVE-2011-5279——CRLF injection vulnerability in the CGI implementation in Microsoft Internet Information Services (IIS) 4.x and 5.x on W...
CVE-2011-3154——DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before ...
CVE-2011-4406——The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language...
CVE-2011-4195——kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-4193——Cross-site scripting (XSS) vulnerability in the overlay files tab in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio...
CVE-2011-4192——kiwi before 4.85.1, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2...
CVE-2011-4089——The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary file...
CVE-2011-3180——kiwi before 4.98.08, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-0993——SUSE Lifecycle Management Server before 1.1 uses world readable postgres credentials, which allows local users to obtain...
CVE-2011-0460——The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attac...
CVE-2011-3628——Untrusted search path vulnerability in pam_motd (aka the MOTD module) in libpam-modules before 1.1.3-2ubuntu2.1 on Ubunt...
CVE-2011-5278——SQL injection vulnerability in signature.php in Advanced Forum Signatures plugin (aka afsignatures) 2.0.4 for MyBB allow...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now