2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1546 | — | — | 1.7% | Apr 4, 2011 | Multiple SQL injection vulnerabilities in Andy's PHP Knowledgebase (Aphpkb) before 0.95.3 allow remote attackers to exec... |
| CVE-2011-1126 | — | — | 0.4% | Apr 4, 2011 | VMware vmrun, as used in VIX API 1.x before 1.10.3 and VMware Workstation 6.5.x and 7.x before 7.1.4 build 385536 on Lin... |
| CVE-2011-0951 | — | — | 14.6% | Apr 4, 2011 | The web-based management interface in Cisco Secure Access Control System (ACS) 5.1 before 5.1.0.44.6 and 5.2 before 5.2.... |
| CVE-2011-0468 | — | — | 0.3% | Apr 4, 2011 | The aaa_base package before 11.3-8.9.1 in SUSE openSUSE 11.3, and before 11.4-54.62.1 in openSUSE 11.4, allows local use... |
| CVE-2011-0461 | — | — | 0.3% | Apr 4, 2011 | /etc/init.d/boot.localfs in the aaa_base package before 11.2-43.48.1 in SUSE openSUSE 11.2, and before 11.3-8.7.1 in ope... |
| CVE-2011-1554 | — | — | 5.4% | Mar 31, 2011 | Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote at... |
| CVE-2011-1553 | — | — | 5.4% | Mar 31, 2011 | Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allo... |
| CVE-2011-1552 | — | — | 10.4% | Mar 31, 2011 | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations,... |
| CVE-2011-1175 | — | — | 2.7% | Mar 31, 2011 | tcptls.c in the TCP/TLS server in Asterisk Open Source 1.6.1.x before 1.6.1.23, 1.6.2.x before 1.6.2.17.1, and 1.8.x bef... |
| CVE-2011-1174 | — | — | 2.7% | Mar 31, 2011 | manager.c in Asterisk Open Source 1.6.1.x before 1.6.1.24, 1.6.2.x before 1.6.2.17.2, and 1.8.x before 1.8.3.2 allows re... |
| CVE-2011-0963 | — | — | 1.8% | Mar 31, 2011 | The default configuration of the RADIUS authentication feature on the Cisco Network Admission Control (NAC) Guest Server... |
| CVE-2011-0764 | — | — | 13.1% | Mar 31, 2011 | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjuncti... |
| CVE-2011-0727 | — | — | 0.4% | Mar 31, 2011 | GNOME Display Manager (gdm) 2.x before 2.32.1 allows local users to change the ownership of arbitrary files via a symlin... |
| CVE-2011-1551 | — | — | 0.3% | Mar 30, 2011 | SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ directory tree to the web-service user account, which m... |
| CVE-2011-1550 | — | — | 0.4% | Mar 30, 2011 | The default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process files in directories tha... |
| CVE-2011-1549 | — | — | 0.4% | Mar 30, 2011 | The default configuration of logrotate on Gentoo Linux uses root privileges to process files in directories that permit ... |
| CVE-2011-1548 | — | — | 0.4% | Mar 30, 2011 | The default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in directories that per... |
| CVE-2011-1155 | — | — | 0.4% | Mar 30, 2011 | The writeState function in logrotate.c in logrotate 3.7.9 and earlier might allow context-dependent attackers to cause a... |
| CVE-2011-1154 | — | — | 0.4% | Mar 30, 2011 | The shred_file function in logrotate.c in logrotate 3.7.9 and earlier might allow context-dependent attackers to execute... |
| CVE-2011-1098 | — | — | 0.3% | Mar 30, 2011 | Race condition in the createOutputFile function in logrotate.c in logrotate 3.7.9 and earlier allows local users to read... |
| CVE-2011-1097 | — | — | 3.2% | Mar 30, 2011 | rsync 3.x before 3.0.8, when certain recursion, deletion, and ownership options are used, allows remote rsync servers to... |
| CVE-2011-1472 | — | — | 0.3% | Mar 29, 2011 | The Nokia E75 phone with firmware before 211.12.01 allows physically proximate attackers to bypass the Device Lock code ... |
| CVE-2011-1205 | — | — | 0.4% | Mar 29, 2011 | Multiple buffer overflows in unspecified COM objects in Rational Common Licensing 7.0 through 7.1.1.4 in IBM Rational Cl... |
| CVE-2011-1176 | — | — | 2.7% | Mar 29, 2011 | The configuration merger in itk.c in the Steinar H. Gunderson mpm-itk Multi-Processing Module 2.2.11-01 and 2.2.11-02 fo... |
| CVE-2011-0892 | — | — | 1.8% | Mar 29, 2011 | Cross-site scripting (XSS) vulnerability in HP Diagnostics 7.5x and 8.0x before 8.05.54.225 allows remote attackers to i... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now