2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-3625 | — | — | 24.1% | Jun 11, 2014 | Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, all... |
| CVE-2011-5280 | — | — | 2.7% | Jun 2, 2014 | Multiple stack-based buffer overflows in BOINC 6.13.x allow remote attackers to cause a denial of service (crash) via a ... |
| CVE-2011-2198 | — | — | 2.2% | May 21, 2014 | The "insert-blank-characters" capability in caps.c in gnome-terminal (vte) before 0.28.1 allows remote authenticated use... |
| CVE-2011-5249 | — | — | 1.4% | May 14, 2014 | Cross-site scripting (XSS) vulnerability in the events page in the System iNtrusion Analysis and Reporting Environment (... |
| CVE-2011-4407 | — | — | 0.6% | May 14, 2014 | ppa.py in Software Properties before 0.81.13.3 does not validate the server certificate when downloading PPA GPG key fin... |
| CVE-2011-2514 | — | — | 2.4% | May 14, 2014 | The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W... |
| CVE-2011-2513 | — | — | 2.5% | May 14, 2014 | The Java Network Launching Protocol (JNLP) implementation in IcedTea6 1.9.x before 1.9.9 and before 1.8.9, and IcedTea-W... |
| CVE-2011-4970 | — | — | 1.5% | May 13, 2014 | Multiple SQL injection vulnerabilities in LCG Disk Pool Manager (DPM) before 1.8.6, as used in EGI UDM, allow remote att... |
| CVE-2011-3603 | — | — | 0.4% | Apr 27, 2014 | The router advertisement daemon (radvd) before 1.8.2 does not properly handle errors in the privsep_init function, which... |
| CVE-2011-3602 | — | — | 2.8% | Apr 27, 2014 | Directory traversal vulnerability in device-linux.c in the router advertisement daemon (radvd) before 1.8.2 allows local... |
| CVE-2011-3152 | — | — | 2.3% | Apr 27, 2014 | DistUpgrade/DistUpgradeFetcherCore.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x bef... |
| CVE-2011-5279 | — | — | 19.1% | Apr 23, 2014 | CRLF injection vulnerability in the CGI implementation in Microsoft Internet Information Services (IIS) 4.x and 5.x on W... |
| CVE-2011-3154 | — | — | 0.3% | Apr 17, 2014 | DistUpgrade/DistUpgradeViewKDE.py in Update Manager before 1:0.87.31.1, 1:0.134.x before 1:0.134.11.1, 1:0.142.x before ... |
| CVE-2011-4406 | — | — | 0.4% | Apr 16, 2014 | The Ubuntu AccountsService package before 0.6.14-1git1ubuntu1.1 does not properly drop privileges when changing language... |
| CVE-2011-4195 | — | — | 1.9% | Apr 16, 2014 | kiwi before 4.98.05, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.... |
| CVE-2011-4193 | — | — | 0.9% | Apr 16, 2014 | Cross-site scripting (XSS) vulnerability in the overlay files tab in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio... |
| CVE-2011-4192 | — | — | 1.5% | Apr 16, 2014 | kiwi before 4.85.1, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.2... |
| CVE-2011-4089 | — | — | 1.0% | Apr 16, 2014 | The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary file... |
| CVE-2011-3180 | — | — | 2.6% | Apr 16, 2014 | kiwi before 4.98.08, as used in SUSE Studio Onsite 1.2 before 1.2.1 and SUSE Studio Extension for System z 1.2 before 1.... |
| CVE-2011-0993 | — | — | 0.4% | Apr 16, 2014 | SUSE Lifecycle Management Server before 1.1 uses world readable postgres credentials, which allows local users to obtain... |
| CVE-2011-0460 | — | — | 0.3% | Apr 16, 2014 | The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attac... |
| CVE-2011-3628 | — | — | 0.4% | Apr 15, 2014 | Untrusted search path vulnerability in pam_motd (aka the MOTD module) in libpam-modules before 1.1.3-2ubuntu2.1 on Ubunt... |
| CVE-2011-5278 | — | — | 1.3% | Apr 8, 2014 | SQL injection vulnerability in signature.php in Advanced Forum Signatures plugin (aka afsignatures) 2.0.4 for MyBB allow... |
| CVE-2011-5277 | — | — | 1.3% | Apr 8, 2014 | Multiple SQL injection vulnerabilities in signature.php in the Advanced Forum Signatures (aka afsignatures) plugin 2.0.4... |
| CVE-2011-4958 | — | — | 4.3% | Apr 8, 2014 | Cross-site scripting (XSS) vulnerability in the process function in SSViewer.php in SilverStripe before 2.3.13 and 2.4.x... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now