2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-2169Google Chrome OS before R12 0.12.433.38 Beta allows local users to gain privileges by creating a /var/lib/chromeos-alias...
CVE-2011-2168Multiple integer overflows in the glob implementation in libc in OpenBSD before 4.9 might allow context-dependent attack...
CVE-2011-2167script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote a...
CVE-2011-2166script-login in Dovecot 2.0.x before 2.0.13 does not follow the user and group configuration settings, which might allow...
CVE-2011-1929lib-mail/message-header-parser.c in Dovecot 1.2.x before 1.2.17 and 2.0.x before 2.0.13 does not properly handle '\0' ch...
CVE-2011-1928The fnmatch implementation in apr_fnmatch.c in the Apache Portable Runtime (APR) library 1.4.3 and 1.4.4, and the Apache...
CVE-2011-1595Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection ...
CVE-2011-1521The urllib and urllib2 modules in Python 2.x before 2.7.2 and 3.x before 3.2.1 process Location headers that specify red...
CVE-2011-1424The default configuration of ExShortcut\Web.config in EMC SourceOne Email Management before 6.6 SP1, when the Mobile Ser...
CVE-2011-1328SQL injection vulnerability in RADVISION iVIEW Suite before 7.5 allows remote attackers to execute arbitrary SQL command...
CVE-2011-0418The glob implementation in Pure-FTPd before 1.0.32, and in libc in NetBSD 5.1, does not properly expand expressions cont...
CVE-2011-2165The STARTTLS implementation in WatchGuard XCS 9.0 and 9.1 does not properly restrict I/O buffering, which allows man-in-...
CVE-2011-1926The STARTTLS implementation in Cyrus IMAP Server before 2.4.7 does not properly restrict I/O buffering, which allows man...
CVE-2011-1920The make include files in NetBSD before 1.6.2, as used in pmake 1.111 and other products, allow local users to overwrite...
CVE-2011-1766includes/User.php in MediaWiki before 1.16.5, when wgBlockDisablesLogin is enabled, does not clear certain cached data a...
CVE-2011-1765Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.5, when Internet Explorer 6 or earlier is used, allows...
CVE-2011-1575The STARTTLS implementation in ftp_parser.c in Pure-FTPd before 1.0.30 does not properly restrict I/O buffering, which a...
CVE-2011-2164Multiple unspecified vulnerabilities in Adobe Photoshop before 12.0.4 have unknown impact and attack vectors.
CVE-2011-2163Unspecified vulnerability in Virtualization Manager 1.2.2 in IBM Systems Director 1.2.2 has unknown impact and attack ve...
CVE-2011-2162Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandri...
CVE-2011-2161The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media play...
CVE-2011-2160The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restric...
CVE-2011-2159The SmarterTools SmarterStats 6.0 web server omits the Content-Type header for certain resources, which might allow remo...
CVE-2011-2158The SmarterTools SmarterStats 6.0 web server sends incorrect Content-Type headers for certain resources, which might all...
CVE-2011-2157The (1) Admin/frmEmailReportSettings.aspx and (2) Admin/frmGeneralSettings.aspx components in the SmarterTools SmarterSt...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now