2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2011-0891——Unspecified vulnerability in the OS-Core.CORE2-KRN fileset in HP HP-UX B.11.23 and B.11.31 allows local users to cause a...
CVE-2011-1557——SQL injection vulnerability in ICloudCenter ICJobSite 1.1 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2011-1556——SQL injection vulnerability in plugins/pdfClasses/pdfgen.php in Andy's PHP Knowledgebase (Aphpkb) 0.95.4 allows remote a...
CVE-2011-1555——SQL injection vulnerability in saa.php in Andy's PHP Knowledgebase (Aphpkb) 0.95.3 and earlier allows remote attackers t...
CVE-2011-1546——Multiple SQL injection vulnerabilities in Andy's PHP Knowledgebase (Aphpkb) before 0.95.3 allow remote attackers to exec...
CVE-2011-1126——VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Lin...
CVE-2011-0951——The web-based management interface in Cisco Secure Access Control System (ACS) 5.1 before 5.1.0.44.6 and 5.2 before 5.2....
CVE-2011-0468——The aaa_base package before 11.3-8.9.1 in SUSE openSUSE 11.3, and before 11.4-54.62.1 in openSUSE 11.4, allows local use...
CVE-2011-0461——/etc/init.d/boot.localfs in the aaa_base package before 11.2-43.48.1 in SUSE openSUSE 11.2, and before 11.3-8.7.1 in ope...
CVE-2011-1554——Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote at...
CVE-2011-1553——Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allo...
CVE-2011-1552——t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations,...
CVE-2011-1175——tcptls.c in the TCP/TLS server in Asterisk Open Source 1.6.1.x before 1.6.1.23, 1.6.2.x before 1.6.2.17.1, and 1.8.x bef...
CVE-2011-1174——manager.c in Asterisk Open Source 1.6.1.x before 1.6.1.24, 1.6.2.x before 1.6.2.17.2, and 1.8.x before 1.8.3.2 allows re...
CVE-2011-0963——The default configuration of the RADIUS authentication feature on the Cisco Network Admission Control (NAC) Guest Server...
CVE-2011-0764——t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjuncti...
CVE-2011-0727——GNOME Display Manager (gdm) 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlin...
CVE-2011-1551——SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which m...
CVE-2011-1550——The default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process files in directories tha...
CVE-2011-1549——The default configuration of logrotate on Gentoo Linux uses root privileges to process files in directories that permit ...
CVE-2011-1548——The default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in directories that per...
CVE-2011-1155——The writeState function in logrotate.c in logrotate 3.7.9 and earlier might allow context-dependent attackers to cause a...
CVE-2011-1154——The shred_file function in logrotate.c in logrotate 3.7.9 and earlier might allow context-dependent attackers to execute...
CVE-2011-1098——Race condition in the createOutputFile function in logrotate.c in logrotate 3.7.9 and earlier allows local users to read...
CVE-2011-1097——rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows remote rsync servers to...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now