2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2011-2935MEDIUM6.1Elgg through 1.7.10 has XSS
CVE-2011-2336MEDIUM6.5An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that sign...
CVE-2011-2807MEDIUM6.5Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13.
CVE-2011-2353MEDIUM6.5Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDoc...
CVE-2011-2808MEDIUM6.5A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with...
CVE-2011-4904MEDIUM6.5TYPO3 before 4.4.9 and 4.5.x before 4.5.4 does not apply proper access control on ExtDirect calls which allows remote at...
CVE-2011-4903MEDIUM6.1Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4902MEDIUM6.5TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to delete arbitrary files on the...
CVE-2011-4901MEDIUM6.5TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to extract arbitrary information...
CVE-2011-4900MEDIUM6.5TYPO3 before 4.5.4 allows Information Disclosure in the backend.
CVE-2011-4632MEDIUM5.4Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4631MEDIUM5.4Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4630MEDIUM5.4Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4629MEDIUM5.4Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-4627MEDIUM6.5TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows Information Disclosure on the backend.
CVE-2011-4626MEDIUM6.1Cross-site Scripting (XSS) in TYPO3 before 4.3.12, 4.4.x before 4.4.9, and 4.5.x before 4.5.4 allows remote attackers to...
CVE-2011-1459MEDIUM6.5The WebKit::WebPluginContainerImpl::handleEvent function in Google Chrome before Blink M11 allows an attacker to cause a...
CVE-2011-1135MEDIUM6.1Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to exe...
CVE-2011-1133MEDIUM6.1Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to exe...
CVE-2011-0428MEDIUM6.1Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due ...
CVE-2011-3151MEDIUM5.2The Ubuntu SELinux initscript before version 1:0.10 used touch to create a lockfile in a world-writable directory. If th...
CVE-2011-1830MEDIUM5.7Ekiga versions before 3.3.0 attempted to load a module from /tmp/ekiga_test.so.
CVE-2011-4183MEDIUM6.5A vulnerability in open build service allows remote attackers to upload arbitrary RPM files. Affected releases are SUSE ...
CVE-2011-4190MEDIUM5.9The kdump implementation is missing the host key verification in the kdump and mkdumprd OpenSSH integration of kdump pri...
CVE-2011-3172MEDIUM5.4A vulnerability in pam_modules of SUSE Linux Enterprise allows attackers to log into accounts that should have been disa...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now