2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2011-5138——Cross-site scripting (XSS) vulnerability in member.php in tForum b0.915 allows remote attackers to inject arbitrary web ...
CVE-2011-5137——Multiple SQL injection vulnerabilities in tForum b0.915 allow remote attackers to execute arbitrary SQL commands via the...
CVE-2011-5136——showImg.php in EPractize Labs Subscription Manager, possibly 1.0, allows remote attackers to overwrite arbitrary files v...
CVE-2011-5135——Multiple SQL injection vulnerabilities in the save_connection function in lib/lib.iotask.php in the iotask module in Doc...
CVE-2011-5134——Unrestricted file upload vulnerability in editor/extensions/browser/file.php in the JCE component before 2.0.18 for Joom...
CVE-2011-5133——Unspecified vulnerability in MyBB before 1.6.5 has unknown impact and attack vectors, related to an "unparsed user avata...
CVE-2011-5132——Cross-site scripting (XSS) vulnerability in MyBB before 1.6.5 allows remote attackers to inject arbitrary web script or ...
CVE-2011-5131——Cross-site request forgery (CSRF) vulnerability in global.php in MyBB before 1.6.5 allows remote attackers to hijack the...
CVE-2011-5130——dev/less.php in Family Connections CMS (FCMS) 2.5.0 - 2.7.1, when register_globals is enabled, allows remote attackers t...
CVE-2011-5129——Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and p...
CVE-2011-1398——The sapi_header_op function in main/SAPI.c in PHP before 5.3.11 and 5.4.x before 5.4.0RC2 does not check for %0D sequenc...
CVE-2011-4578——event.c in acpid (aka acpid2) before 2.0.11 does not have an appropriate umask setting during execution of event-handler...
CVE-2011-2777——samples/powerbtn/powerbtn.sh in acpid (aka acpid2) 2.0.16 and earlier uses the pidof program incorrectly, which allows l...
CVE-2011-5128——Multiple cross-site scripting (XSS) vulnerabilities in the Adminimize plugin before 1.7.22 for WordPress allow remote at...
CVE-2011-4926——Cross-site scripting (XSS) vulnerability in adminimize/adminimize_page.php in the Adminimize plugin before 1.7.22 for Wo...
CVE-2011-4918——Multiple cross-site scripting (XSS) vulnerabilities in Elxis CMS 2009.2, 2009.3 and 2009.3 Aphrodite before revision 268...
CVE-2011-4944——Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been writte...
CVE-2011-5127——Directory traversal vulnerability in Blue Coat Reporter 9.x before 9.2.4.13, 9.2.5.x before 9.2.5.1, and 9.3 before 9.3....
CVE-2011-5126——Blue Coat ProxySG 6.1 before SGOS 6.1.5.1 and 6.2 before SGOS 6.2.2.1 writes the secure heap to core images, which allow...
CVE-2011-5125——Cross-site scripting (XSS) vulnerability in Blue Coat Director before 5.5.2.3 allows remote attackers to inject arbitrar...
CVE-2011-5124——Stack-based buffer overflow in the BCAAA component before build 60258, as used by Blue Coat ProxySG 4.2.3 through 6.1 an...
CVE-2011-5123——The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not check whether X.509 certificates in ...
CVE-2011-5122——The Antivirus component in Comodo Internet Security before 5.3.175888.1227 allows remote attackers to cause a denial of ...
CVE-2011-5121——The Antivirus component in Comodo Internet Security before 5.3.175888.1227 does not properly check whether unspecified X...
CVE-2011-5120——The Antivirus component in Comodo Internet Security before 5.4.189822.1355 allows remote attackers to cause a denial of ...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now