2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2011-4367Multiple directory traversal vulnerabilities in MyFaces JavaServer Faces (JSF) in Apache MyFaces Core 2.0.x before 2.0.1...
CVE-2011-2592Heap-based buffer overflow in the StartEpa method in the nsepacom ActiveX control (nsepa.exe) in Citrix Access Gateway E...
CVE-2011-3625Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, all...
CVE-2011-5280Multiple stack-based buffer overflows in BOINC 6.13.x allow remote attackers to cause a denial of service (crash) via a ...
CVE-2011-2198The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated use...
CVE-2011-5249Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (...
CVE-2011-4407ppa.py in Software Properties before 0.81.13.3 does not validate the server certificate when downloading PPA GPG key fin...
CVE-2011-2514The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-2513The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W...
CVE-2011-4970Multiple SQL injection vulnerabilities in LCG Disk Pool Manager (DPM) before 1.8.6, as used in EGI UDM, allow remote att...
CVE-2011-3603The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which...
CVE-2011-3602Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local...
CVE-2011-3152DistUpgrade/DistUpgradeFetcherCore.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x bef...
CVE-2011-5279CRLF injection vulnerability in the CGI implementation in Microsoft Internet Information Services (IIS) 4.x and 5.x on W...
CVE-2011-3154DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before ...
CVE-2011-4406The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language...
CVE-2011-4195kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-4193Cross-site scripting (XSS) vulnerability in the overlay files tab in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio...
CVE-2011-4192kiwi before 4.85.1, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2...
CVE-2011-4089The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary file...
CVE-2011-3180kiwi before 4.98.08, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1....
CVE-2011-0993SUSE Lifecycle Management Server before 1.1 uses world readable postgres credentials, which allows local users to obtain...
CVE-2011-0460The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attac...
CVE-2011-3628Untrusted search path vulnerability in pam_motd (aka the MOTD module) in libpam-modules before 1.1.3-2ubuntu2.1 on Ubunt...
CVE-2011-5278SQL injection vulnerability in signature.php in Advanced Forum Signatures plugin (aka afsignatures) 2.0.4 for MyBB allow...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now