2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1877 | — | — | 1.5% | Jul 13, 2011 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP1 and SP2, Windows Se... |
| CVE-2011-1876 | — | — | 1.4% | Jul 13, 2011 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Serve... |
| CVE-2011-1875 | — | — | 1.4% | Jul 13, 2011 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Serve... |
| CVE-2011-1874 | HIGH | 7.8 | 1.2% | Jul 13, 2011 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Serve... |
| CVE-2011-1870 | — | — | 2.2% | Jul 13, 2011 | Integer overflow in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 ... |
| CVE-2011-1284 | — | — | 2.1% | Jul 13, 2011 | Integer overflow in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 ... |
| CVE-2011-1283 | — | — | 2.1% | Jul 13, 2011 | The Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Windows Ser... |
| CVE-2011-1282 | HIGH | 8.4 | 1.6% | Jul 13, 2011 | The Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Windows Ser... |
| CVE-2011-1281 | — | — | 2.1% | Jul 13, 2011 | The Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Windows Ser... |
| CVE-2011-1265 | HIGH | 8.8 | 5.9% | Jul 13, 2011 | The Bluetooth Stack 2.1 in Microsoft Windows Vista SP1 and SP2 and Windows 7 Gold and SP1 does not prevent access to obj... |
| CVE-2011-2516 | — | — | 7.7% | Jul 11, 2011 | Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 a... |
| CVE-2011-2398 | — | — | 0.3% | Jul 11, 2011 | Unspecified vulnerability in the dynamic loader in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain pri... |
| CVE-2011-2064 | — | — | 1.9% | Jul 11, 2011 | Cisco IOS 12.4MDA before 12.4(24)MDA5 on the Cisco Content Services Gateway - Second Generation (CSG2) allows remote att... |
| CVE-2011-1951 | — | — | 2.5% | Jul 11, 2011 | lib/logmatcher.c in Balabit syslog-ng before 3.2.4, when the global flag is set and when using PCRE 8.12 and possibly ot... |
| CVE-2011-1867 | — | — | 25.8% | Jul 11, 2011 | Stack-based buffer overflow in iNodeMngChecker.exe in the User Access Manager (UAM) 5.0 before SP1 E0101P03 and Endpoint... |
| CVE-2011-1526 | — | — | 3.9% | Jul 11, 2011 | ftpd.c in the GSS-API FTP daemon in MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.1 and earlier does not check... |
| CVE-2011-1338 | — | — | 0.3% | Jul 11, 2011 | Untrusted search path vulnerability in XnView before 1.98.1 allows local users to gain privileges via a Trojan horse .ex... |
| CVE-2011-0549 | — | — | 2.2% | Jul 11, 2011 | SQL injection vulnerability in forget.php in the management GUI in Symantec Web Gateway 4.5.x allows remote attackers to... |
| CVE-2011-2664 | — | — | 0.3% | Jul 8, 2011 | Unspecified vulnerability in Check Point Multi-Domain Management / Provider-1 NGX R65, R70, R71, and R75, and SmartCente... |
| CVE-2011-2465 | — | — | 8.9% | Jul 8, 2011 | Unspecified vulnerability in ISC BIND 9 9.8.0, 9.8.0-P1, 9.8.0-P2, and 9.8.1b1, when recursion is enabled and the Respon... |
| CVE-2011-2464 | — | — | 19.3% | Jul 8, 2011 | Unspecified vulnerability in ISC BIND 9 9.6.x before 9.6-ESV-R4-P3, 9.7.x before 9.7.3-P3, and 9.8.x before 9.8.0-P4 all... |
| CVE-2011-2344 | — | — | 1.1% | Jul 8, 2011 | Android Picasa in Android 3.0 and 2.x through 2.3.4 uses a cleartext HTTP session when transmitting the authToken obtain... |
| CVE-2011-1001 | — | — | 1.2% | Jul 8, 2011 | dexdump in Android SDK before 2.3 does not properly perform structural verification, which allows user-assisted remote a... |
| CVE-2011-2192 | — | — | 3.0% | Jul 7, 2011 | The Curl_input_negotiate function in http_negotiate.c in libcurl 7.10.6 through 7.21.6, as used in curl and other produc... |
| CVE-2011-1946 | — | — | 0.4% | Jul 7, 2011 | gnomesu-pam-backend in libgnomesu 1.0.0 prints an error message but proceeds with the non-error code path upon failure o... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now