2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-4117HIGH7.5The Batch::BatchRun module 1.03 for Perl does not properly handle temporary files.
CVE-2011-4116LOW3.3_is_safe in the File::Temp module for Perl does not properly handle symlinks.
CVE-2011-4115HIGH7.5Parallel::ForkManager module before 1.0.0 for Perl does not properly handle temporary files.
CVE-2011-4088HIGH7.5ABRT might allow attackers to obtain sensitive information from crash reports.
CVE-2011-4558HIGH7.2Tiki 8.2 and earlier allows remote administrators to execute arbitrary PHP code via crafted input to the regexres and re...
CVE-2011-3622MEDIUM6.1A Cross-Site Scripting (XSS) vulnerability exists in the admin login screen in Phorum before 5.2.18.
CVE-2011-3621CRITICAL9.8A reverse proxy issue exists in FluxBB before 1.4.7 when FORUM_BEHIND_REVERSE_PROXY is enabled.
CVE-2011-3614CRITICAL9.8An Access Control vulnerability exists in the Facebook, Twitter, and Embedded plugins in Vanilla Forums before 2.0.17.9.
CVE-2011-3613HIGH7.5An issue exists in Vanilla Forums before 2.0.17.9 due to the way cookies are handled.
CVE-2011-3612HIGH8.8Cross-Site Request Forgery (CSRF) vulnerability exists in panel.php in UseBB before 1.0.12.
CVE-2011-3611HIGH7.2A File Inclusion vulnerability exists in act parameter to admin.php in UseBB before 1.0.12.
CVE-2011-3610MEDIUM6.1A Cross-site Scripting (XSS) vulnerability exists in the Serendipity freetag plugin before 3.30 in the tagcloud paramete...
CVE-2011-3595MEDIUM5.4Multiple Cross-site Scripting (XSS) vulnerabilities exist in Joomla! through 1.7.0 in index.php in the search word, exte...
CVE-2011-3582HIGH8.8A Cross-site Request Forgery (CSRF) vulnerability exists in Advanced Electron Forums (AEF) through 1.0.9 due to inadequa...
CVE-2011-4943CRITICAL9.8ImpressPages CMS v1.0.12 has Unspecified Remote Code Execution (fixed in v1.0.13)
CVE-2011-5282MEDIUM5.3mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
CVE-2011-4322HIGH7.5websitebaker prior to and including 2.8.1 has an authentication error in backup module.
CVE-2011-4095MEDIUM6.1Jara 1.6 has an XSS vulnerability
CVE-2011-4094CRITICAL9.8Jara 1.6 has a SQL injection vulnerability.
CVE-2011-2669MEDIUM6.5Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.
CVE-2011-2668HIGH8.8Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header
CVE-2011-4907MEDIUM5.3Joomla! 1.5x through 1.5.12: Missing JEXEC Check
CVE-2011-4336MEDIUM6.1Tiki Wiki CMS Groupware 7.0 has XSS via the GET "ajax" parameter to snarf_ajax.php.
CVE-2011-2715CRITICAL9.8An SQL Injection vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table...
CVE-2011-2714MEDIUM6.1A Cross-Site Scripting vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now