2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-2549 | — | — | 1.7% | Jul 28, 2011 | Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers (ASR) 9000 series dev... |
| CVE-2011-2547 | — | — | 2.2% | Jul 28, 2011 | The web-based management interface on Cisco SA 500 series security appliances with software before 2.1.19 allows remote ... |
| CVE-2011-2546 | — | — | 1.1% | Jul 28, 2011 | SQL injection vulnerability in the web-based management interface on Cisco SA 500 series security appliances with softwa... |
| CVE-2011-2492 | — | — | 0.4% | Jul 28, 2011 | The bluetooth subsystem in the Linux kernel before 3.0-rc4 does not properly initialize certain data structures, which a... |
| CVE-2011-2958 | — | — | 1.2% | Jul 28, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Ecava IntegraXor before 3.60 (Build 4080) allow remote attackers ... |
| CVE-2011-2957 | — | — | 0.6% | Jul 28, 2011 | Unspecified vulnerability in Rockwell Automation FactoryTalk Diagnostics Viewer before V2.30.00 (CPR9 SR3) allows local ... |
| CVE-2011-2956 | — | — | 6.7% | Jul 28, 2011 | AzeoTech DAQFactory before 5.85 (Build 1842) does not perform authentication for certain signals, which allows remote at... |
| CVE-2011-2747 | — | — | 4.3% | Jul 28, 2011 | Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote at... |
| CVE-2011-2688 | — | — | 5.7% | Jul 28, 2011 | SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HT... |
| CVE-2011-1339 | — | — | 0.5% | Jul 28, 2011 | Cross-site scripting (XSS) vulnerability in Google Search Appliance before 5.0 allows remote attackers to inject arbitra... |
| CVE-2011-2893 | — | — | 1.5% | Jul 27, 2011 | The DataPilot feature in IBM Lotus Symphony 3 before FP3 allows user-assisted remote attackers to cause a denial of serv... |
| CVE-2011-2892 | — | — | 0.8% | Jul 27, 2011 | Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it... |
| CVE-2011-2891 | — | — | 1.4% | Jul 27, 2011 | Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter t... |
| CVE-2011-2890 | — | — | 1.1% | Jul 27, 2011 | The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla! 1.5.23 and earlier a... |
| CVE-2011-2889 | — | — | 1.4% | Jul 27, 2011 | templates/system/error.php in Joomla! before 1.5.23 might allow remote attackers to obtain sensitive information via uns... |
| CVE-2011-2888 | — | — | 2.2% | Jul 27, 2011 | IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application hang) via complex grap... |
| CVE-2011-2887 | — | — | 2.2% | Jul 27, 2011 | IBM Lotus Symphony 3 before FP3 on Linux allows remote attackers to cause a denial of service (application crash) via a ... |
| CVE-2011-2886 | — | — | 1.5% | Jul 27, 2011 | IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application crash) via a .docx doc... |
| CVE-2011-2885 | — | — | 2.2% | Jul 27, 2011 | IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application crash) via the sample ... |
| CVE-2011-2884 | — | — | 2.3% | Jul 27, 2011 | Multiple unspecified vulnerabilities in IBM Lotus Symphony 3 before FP3 have unknown impact and attack vectors, related ... |
| CVE-2011-2710 | — | — | 1.3% | Jul 27, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.7.0 allow remote attackers to inject arbitrary w... |
| CVE-2011-2509 | — | — | 1.1% | Jul 27, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.6.4 allow remote attackers to inject arbitrary w... |
| CVE-2011-2488 | — | — | 1.4% | Jul 27, 2011 | Joomla! before 1.5.23 does not properly check for errors, which allows remote attackers to obtain sensitive information ... |
| CVE-2011-1152 | — | — | — | Jul 27, 2011 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-3712. Reason: This candidate is a duplicate of... |
| CVE-2011-2745 | — | — | 2.0% | Jul 27, 2011 | upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now