2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-2169 | — | — | 0.2% | May 24, 2011 | Google Chrome OS before R12 0.12.433.38 Beta allows local users to gain privileges by creating a /var/lib/chromeos-alias... |
| CVE-2011-2168 | — | — | 1.1% | May 24, 2011 | Multiple integer overflows in the glob implementation in libc in OpenBSD before 4.9 might allow context-dependent attack... |
| CVE-2011-2167 | — | — | 2.2% | May 24, 2011 | script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote a... |
| CVE-2011-2166 | — | — | 2.0% | May 24, 2011 | script-login in Dovecot 2.0.x before 2.0.13 does not follow the user and group configuration settings, which might allow... |
| CVE-2011-1929 | — | — | 3.3% | May 24, 2011 | lib-mail/message-header-parser.c in Dovecot 1.2.x before 1.2.17 and 2.0.x before 2.0.13 does not properly handle '\0' ch... |
| CVE-2011-1928 | — | — | 10.3% | May 24, 2011 | The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1.4.4, and the Apache... |
| CVE-2011-1595 | — | — | 1.1% | May 24, 2011 | Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection ... |
| CVE-2011-1521 | — | — | 4.3% | May 24, 2011 | The urllib and urllib2 modules in Python 2.x before 2.7.2 and 3.x before 3.2.1 process Location headers that specify red... |
| CVE-2011-1424 | — | — | 0.8% | May 24, 2011 | The default configuration of ExShortcut\Web.config in EMC SourceOne Email Management before 6.6 SP1, when the Mobile Ser... |
| CVE-2011-1328 | — | — | 1.3% | May 24, 2011 | SQL injection vulnerability in RADVISION iVIEW Suite before 7.5 allows remote attackers to execute arbitrary SQL command... |
| CVE-2011-0418 | — | — | 7.3% | May 24, 2011 | The glob implementation in Pure-FTPd before 1.0.32, and in libc in NetBSD 5.1, does not properly expand expressions cont... |
| CVE-2011-2165 | — | — | 5.2% | May 23, 2011 | The STARTTLS implementation in WatchGuard XCS 9.0 and 9.1 does not properly restrict I/O buffering, which allows man-in-... |
| CVE-2011-1926 | — | — | 4.0% | May 23, 2011 | The STARTTLS implementation in Cyrus IMAP Server before 2.4.7 does not properly restrict I/O buffering, which allows man... |
| CVE-2011-1920 | — | — | 0.4% | May 23, 2011 | The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite... |
| CVE-2011-1766 | — | — | 2.2% | May 23, 2011 | includes/User.php in MediaWiki before 1.16.5, when wgBlockDisablesLogin is enabled, does not clear certain cached data a... |
| CVE-2011-1765 | — | — | 2.1% | May 23, 2011 | Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.5, when Internet Explorer 6 or earlier is used, allows... |
| CVE-2011-1575 | — | — | 33.3% | May 23, 2011 | The STARTTLS implementation in ftp_parser.c in Pure-FTPd before 1.0.30 does not properly restrict I/O buffering, which a... |
| CVE-2011-2164 | — | — | 4.1% | May 20, 2011 | Multiple unspecified vulnerabilities in Adobe Photoshop before 12.0.4 have unknown impact and attack vectors. |
| CVE-2011-2163 | — | — | 1.7% | May 20, 2011 | Unspecified vulnerability in Virtualization Manager 1.2.2 in IBM Systems Director 1.2.2 has unknown impact and attack ve... |
| CVE-2011-2162 | — | — | 2.3% | May 20, 2011 | Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandri... |
| CVE-2011-2161 | — | — | 1.2% | May 20, 2011 | The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media play... |
| CVE-2011-2160 | — | — | 1.7% | May 20, 2011 | The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restric... |
| CVE-2011-2159 | — | — | 4.4% | May 20, 2011 | The SmarterTools SmarterStats 6.0 web server omits the Content-Type header for certain resources, which might allow remo... |
| CVE-2011-2158 | — | — | 4.4% | May 20, 2011 | The SmarterTools SmarterStats 6.0 web server sends incorrect Content-Type headers for certain resources, which might all... |
| CVE-2011-2157 | — | — | 2.6% | May 20, 2011 | The (1) Admin/frmEmailReportSettings.aspx and (2) Admin/frmGeneralSettings.aspx components in the SmarterTools SmarterSt... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now