2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-5256 | — | — | 0.9% | Feb 12, 2013 | Cross-site scripting (XSS) vulnerability in the tooltips in LimeSurvey before 1.91+ Build 11379-20111116, when viewing s... |
| CVE-2011-4575 | — | — | 1.8% | Feb 5, 2013 | Cross-site scripting (XSS) vulnerability in the JMX console in JBoss Enterprise Application Platform (EAP) before 5.2.0,... |
| CVE-2011-1352 | — | — | 0.3% | Feb 5, 2013 | The PowerVR SGX driver in Android before 2.3.6 allows attackers to gain root privileges via an application that triggers... |
| CVE-2011-1350 | — | — | 1.1% | Feb 5, 2013 | The PowerVR SGX driver in Android before 2.3.6 allows attackers to obtain potentially sensitive information from kernel ... |
| CVE-2011-5255 | — | — | 1.7% | Jan 31, 2013 | Multiple cross-site scripting (XSS) vulnerabilities in admin/login in X3 CMS 0.4.3.1 and earlier allow remote attackers ... |
| CVE-2011-4618 | — | — | 10.1% | Jan 24, 2013 | Cross-site scripting (XSS) vulnerability in advancedtext.php in Advanced Text Widget plugin before 2.0.2 for WordPress a... |
| CVE-2011-5254 | — | — | 2.6% | Jan 12, 2013 | Unspecified vulnerability in the Connections plugin before 0.7.1.6 for WordPress has unknown impact and attack vectors. |
| CVE-2011-5253 | — | — | 1.1% | Jan 12, 2013 | Dl Download Ticket Service 0.3 through 0.9 allows remote attackers to login as an arbitrary user by supplying an authori... |
| CVE-2011-5252 | — | — | 11.9% | Jan 12, 2013 | Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.... |
| CVE-2011-3937 | — | — | 2.3% | Jan 5, 2013 | The H.263 codec (libavcodec/h263dec.c) in FFmpeg 0.7.x before 0.7.12, 0.8.x before 0.8.11, and unspecified versions befo... |
| CVE-2011-4316 | — | — | 0.3% | Jan 4, 2013 | Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, in certain unspecified conditions, does not lock the desk... |
| CVE-2011-5251 | — | — | 1.5% | Dec 31, 2012 | Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and earlier allows remote attackers to redirect users ... |
| CVE-2011-2728 | — | — | 1.4% | Dec 21, 2012 | The bsd_glob function in the File::Glob module for Perl before 5.14.2 allows context-dependent attackers to cause a deni... |
| CVE-2011-3131 | — | — | 0.4% | Dec 13, 2012 | Xen 4.1.1 and earlier allows local guest OS kernels with control of a PCI[E] device to cause a denial of service (CPU co... |
| CVE-2011-4433 | — | — | — | Dec 11, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this ... |
| CVE-2011-2732 | — | — | 4.6% | Dec 5, 2012 | CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x b... |
| CVE-2011-2731 | — | — | 1.2% | Dec 5, 2012 | Race condition in the RunAsManager mechanism in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 ... |
| CVE-2011-2730 | — | — | 11.8% | Dec 5, 2012 | VMware SpringSource Spring Framework before 2.5.6.SEC03, 2.5.7.SR023, and 3.x before 3.0.6, when a container supports Ex... |
| CVE-2011-5373 | — | — | — | Nov 28, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5373. Reason: This candidate is a duplicate of ... |
| CVE-2011-5372 | — | — | — | Nov 28, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5372. Reason: This candidate is a duplicate of ... |
| CVE-2011-5371 | — | — | — | Nov 28, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5371. Reason: This candidate is a duplicate of ... |
| CVE-2011-5370 | — | — | — | Nov 28, 2012 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5370. Reason: This candidate is a duplicate of ... |
| CVE-2011-5245 | — | — | 3.2% | Nov 23, 2012 | The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arb... |
| CVE-2011-4605 | — | — | 3.5% | Nov 23, 2012 | The (1) JNDI service, (2) HA-JNDI service, and (3) HAJNDIFactory invoker servlet in JBoss Enterprise Application Platfor... |
| CVE-2011-4085 | — | — | 3.0% | Nov 23, 2012 | The servlets invoked by httpha-invoker in JBoss Enterprise Application Platform before 5.1.2, SOA Platform before 5.2.0,... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now