2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-4124CRITICAL9.8Input validation issues were found in Calibre at devices/linux_mount_helper.c which can lead to argument injection and e...
CVE-2011-4119CRITICAL9.8caml-light <= 0.75 uses mktemp() insecurely, and also does unsafe things in /tmp during make install.
CVE-2011-2195CRITICAL9.8A flaw was found in WebSVN 2.3.2. Without prior authentication, if the 'allowDownload' option is enabled in config.php, ...
CVE-2011-1075LOW3.7FreeBSD's crontab calculates the MD5 sum of the previous and new cronjob to determine if any changes have been made befo...
CVE-2011-1497MEDIUM6.1A cross-site scripting vulnerability flaw was found in the auto_link function in Rails before version 3.0.6.
CVE-2011-2926Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-1955Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-1942Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-1177Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-0023Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-3656MEDIUM6.1Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7 allows remote attackers to i...
CVE-2011-4978Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-4977Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-4976Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-4975Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-4974Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No...
CVE-2011-2863MEDIUM6.5Insufficient policy enforcement in V8 in Google Chrome prior to 14.0.0.0 allowed a remote attacker to obtain potentially...
CVE-2011-1805HIGH8.8Bad cast in CSS in Google Chrome prior to 11.0.0.0 allowed a remote attacker to potentially exploit heap corruption via ...
CVE-2011-2487MEDIUM5.9The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is...
CVE-2011-4538MEDIUM5.3Lexmark X, W, T, E, and C devices before 2012-02-09 allow attackers to obtain sensitive information by reading passwords...
CVE-2011-3269HIGH7.5Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a ...
CVE-2011-4915MEDIUM5.5fs/proc/base.c in the Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access t...
CVE-2011-0699HIGH7Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a...
CVE-2011-2498MEDIUM5.5The Linux kernel from v2.3.36 before v2.6.39 allows local unprivileged users to cause a denial of service (memory consum...
CVE-2011-2054HIGH7.5A vulnerability in the Cisco ASA that could allow a remote attacker to successfully authenticate using the Cisco AnyConn...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now