2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-2156 | — | — | 2.6% | May 20, 2011 | The SmarterTools SmarterStats 6.0 web server allows remote attackers to obtain directory listings via a direct request f... |
| CVE-2011-2155 | — | — | 3.9% | May 20, 2011 | Login.aspx in the SmarterTools SmarterStats 6.0 web server generates a ctl00$MPH$txtPassword password form field without... |
| CVE-2011-2154 | — | — | 2.7% | May 20, 2011 | login.aspx in the SmarterTools SmarterStats 6.0 web server does not include the HTTPOnly flag in a Set-Cookie header for... |
| CVE-2011-2153 | — | — | 2.0% | May 20, 2011 | Login.aspx in the SmarterTools SmarterStats 6.0 web server supports URLs containing txtUser and txtPass parameters in th... |
| CVE-2011-2152 | — | — | 2.6% | May 20, 2011 | The SmarterTools SmarterStats 6.0 web server generates web pages containing external links in response to GET requests w... |
| CVE-2011-2151 | — | — | 2.7% | May 20, 2011 | The (1) Admin/frmEmailReportSettings.aspx, (2) Admin/frmGeneralSettings.aspx, (3) Admin/frmSite.aspx, (4) Client/frmUser... |
| CVE-2011-2150 | — | — | 3.0% | May 20, 2011 | The SmarterTools SmarterStats 6.0 web server does not properly validate string data that is intended for storage in an X... |
| CVE-2011-2149 | — | — | 2.4% | May 20, 2011 | Multiple SQL injection vulnerabilities in the SmarterTools SmarterStats 6.0 web server allow remote attackers to execute... |
| CVE-2011-2148 | — | — | 5.3% | May 20, 2011 | Admin/frmSite.aspx in the SmarterTools SmarterStats 6.0 web server allows remote attackers to execute arbitrary commands... |
| CVE-2011-2147 | — | — | 0.3% | May 20, 2011 | Openswan 2.2.x does not properly restrict permissions for (1) /var/run/starter.pid, related to starter.c in the IPsec st... |
| CVE-2011-2021 | — | — | 2.0% | May 20, 2011 | Session fixation vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 allows remote... |
| CVE-2011-2020 | — | — | 1.3% | May 20, 2011 | Cross-site scripting (XSS) vulnerability in TIBCO iProcess Engine before 11.1.3 and iProcess Workspace before 11.3.1 all... |
| CVE-2011-1838 | — | — | 2.7% | May 20, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in TemplateLogin.pm in TWiki before 5.0.2 allow remote attackers to ... |
| CVE-2011-1784 | — | — | 0.4% | May 20, 2011 | The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalive... |
| CVE-2011-1582 | — | — | 6.0% | May 20, 2011 | Apache Tomcat 7.0.12 and 7.0.13 processes the first request to a servlet without following security constraints that hav... |
| CVE-2011-1327 | — | — | 0.2% | May 20, 2011 | The Keystroke Encryption feature in Trend Micro Internet Security 2009 (aka Virus Buster 2009 and PC-cillin 2009) does n... |
| CVE-2011-0966 | — | — | 41.3% | May 20, 2011 | Directory traversal vulnerability in cwhp/auditLog.do in the Homepage Auditing component in Cisco CiscoWorks Common Serv... |
| CVE-2011-0962 | — | — | 4.7% | May 20, 2011 | Cross-site scripting (XSS) vulnerability in CSCOnm/servlet/com.cisco.nm.help.ServerHelpEngine in the Common Services Dev... |
| CVE-2011-0961 | — | — | 5.2% | May 20, 2011 | Cross-site scripting (XSS) vulnerability in cwhp/device.center.do in the Help servlet in Cisco CiscoWorks Common Service... |
| CVE-2011-0960 | — | — | 3.8% | May 20, 2011 | Multiple SQL injection vulnerabilities in Cisco Unified Operations Manager (CUOM) before 8.6 allow remote attackers to e... |
| CVE-2011-0959 | — | — | 21.5% | May 20, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Operations Manager (CUOM) before 8.6 allow remote a... |
| CVE-2011-0723 | — | — | 4.4% | May 20, 2011 | FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application c... |
| CVE-2011-0722 | — | — | 4.2% | May 20, 2011 | FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap m... |
| CVE-2011-2144 | — | — | 1.4% | May 16, 2011 | The eDocument Conversion Actions implementation in IBM Datacap Taskmaster Capture 8.0.1 FP1 and earlier allows remote at... |
| CVE-2011-2143 | — | — | 1.2% | May 16, 2011 | IBM Datacap Taskmaster Capture 8.0.1 before FP1, when Windows Authentication is enabled, allows remote attackers to obta... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now