2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1959 | — | — | 3.0% | Jun 6, 2011 | The snoop_read function in wiretap/snoop.c in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 does not properly han... |
| CVE-2011-1958 | — | — | 2.9% | Jun 6, 2011 | Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service ... |
| CVE-2011-1957 | — | — | 2.6% | Jun 6, 2011 | The dissect_dcm_main function in epan/dissectors/packet-dcm.c in the DICOM dissector in Wireshark 1.2.x before 1.2.17 an... |
| CVE-2011-1956 | — | — | 5.9% | Jun 6, 2011 | The bytes_repr_len function in Wireshark 1.4.5 uses an incorrect pointer argument, which allows remote attackers to caus... |
| CVE-2011-1954 | — | — | 0.7% | Jun 6, 2011 | Multiple cross-site request forgery (CSRF) vulnerabilities in Post Revolution 0.8.0c-2 and earlier allow remote attacker... |
| CVE-2011-1953 | — | — | 1.1% | Jun 6, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in common.php in Post Revolution before 0.8.0c-2 allow remote attack... |
| CVE-2011-1952 | — | — | 1.5% | Jun 6, 2011 | common.php in Post Revolution before 0.8.0c-2 allows remote attackers to cause a denial of service (infinite loop) via m... |
| CVE-2011-1950 | — | — | 1.6% | Jun 6, 2011 | plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts vi... |
| CVE-2011-1949 | — | — | 1.3% | Jun 6, 2011 | Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 a... |
| CVE-2011-1948 | — | — | 2.4% | Jun 6, 2011 | Cross-site scripting (XSS) vulnerability in Plone 4.1 and earlier allows remote attackers to inject arbitrary web script... |
| CVE-2011-1921 | — | — | 6.0% | Jun 6, 2011 | The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, wh... |
| CVE-2011-1787 | — | — | 0.2% | Jun 6, 2011 | Race condition in mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMw... |
| CVE-2011-1783 | — | — | 6.7% | Jun 6, 2011 | The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, wh... |
| CVE-2011-1752 | — | — | 8.5% | Jun 6, 2011 | The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion before 1.6.17, allows remote atta... |
| CVE-2011-1178 | — | — | 5.3% | Jun 6, 2011 | Multiple integer overflows in the load_image function in file-pcx.c in the Personal Computer Exchange (PCX) plugin in GI... |
| CVE-2011-0767 | — | — | 1.2% | Jun 6, 2011 | Cross-site scripting (XSS) vulnerability in the management GUI in the MX Management Server in Imperva SecureSphere Web A... |
| CVE-2011-0082 | — | — | 1.5% | Jun 6, 2011 | The X.509 certificate validation functionality in Mozilla Firefox 4.0.x through 4.0.1 does not properly implement single... |
| CVE-2011-2383 | — | — | 20.8% | Jun 3, 2011 | Microsoft Internet Explorer 9 and earlier does not properly restrict cross-zone drag-and-drop actions, which allows user... |
| CVE-2011-2382 | — | — | 19.3% | Jun 3, 2011 | Microsoft Internet Explorer 8 and earlier, and Internet Explorer 9 beta, does not properly restrict cross-zone drag-and-... |
| CVE-2011-2331 | — | — | 13.3% | Jun 2, 2011 | Integer overflow in img.exe in HP Intelligent Management Center (IMC) allows remote attackers to execute arbitrary code ... |
| CVE-2011-2330 | — | — | 1.8% | Jun 2, 2011 | Tivoli Endpoint in IBM Tivoli Management Framework 3.7.1, 4.1, 4.1.1, and 4.3.1 has an unspecified "built-in account" th... |
| CVE-2011-2329 | — | — | 2.0% | Jun 2, 2011 | The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not prope... |
| CVE-2011-2328 | — | — | 5.9% | Jun 2, 2011 | Buffer overflow in HP LoadRunner allows remote attackers to cause a denial of service (daemon crash) or possibly execute... |
| CVE-2011-2041 | — | — | 0.3% | Jun 2, 2011 | The Start Before Logon (SBL) functionality in Cisco AnyConnect Secure Mobility Client (formerly AnyConnect VPN Client) b... |
| CVE-2011-2024 | — | — | 3.4% | Jun 2, 2011 | Cisco Network Registrar before 7.2 has a default administrative password, which makes it easier for remote attackers to ... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now