2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-4838JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which ...
CVE-2011-4815Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predi...
CVE-2011-4462Plone 4.1.3 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisi...
CVE-2011-4461Jetty 8.1.0.RC2 and earlier computes hash values for form parameters without restricting the ability to trigger hash col...
CVE-2011-4084Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4858. Reason: This candidate is a duplicate of C...
CVE-2011-3417The Forms Authentication feature in the ASP.NET subsystem in Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5 SP1, 3.5.1, ...
CVE-2011-3416The Forms Authentication feature in the ASP.NET subsystem in Microsoft .NET Framework 1.1 SP1, 2.0 SP2, 3.5 SP1, 3.5.1, ...
CVE-2011-3415Open redirect vulnerability in the Forms Authentication feature in the ASP.NET subsystem in Microsoft .NET Framework 2.0...
CVE-2011-3414The CaseInsensitiveHashProvider.getHashCode function in the HashTable implementation in the ASP.NET subsystem in Microso...
CVE-2011-5033Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmi...
CVE-2011-5032WMDrive.sys 3.4.181.224 in WinMount 3.5.1018 allows local users to cause a denial of service (NULL pointer dereference a...
CVE-2011-5031Multiple SQL injection vulnerabilities in servlet/capexweb.parentvalidatepassword in cApexWEB 1.1 allow remote attackers...
CVE-2011-5030Cross-site scripting (XSS) vulnerability in the Meta tags quick module 7.x-2.x before 7.x-2.3 for Drupal allows remote a...
CVE-2011-5029Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog 0.7.0 and possibly earlier allow remote attackers...
CVE-2011-5028Directory traversal vulnerability in novelllogmanager/FileDownload in Novell Sentinel Log Manager 1.2.0.1_938 and earlie...
CVE-2011-5027Cross-site scripting (XSS) vulnerability in ZABBIX before 1.8.10 allows remote attackers to inject arbitrary web script ...
CVE-2011-4615Multiple cross-site scripting (XSS) vulnerabilities in Zabbix before 1.8.10 allow remote attackers to inject arbitrary w...
CVE-2011-4165Unspecified vulnerability in HP Database Archiving Software 6.31 allows remote attackers to execute arbitrary code via u...
CVE-2011-4164Unspecified vulnerability in HP Database Archiving Software 6.31 allows remote attackers to execute arbitrary code via u...
CVE-2011-4163Unspecified vulnerability in HP Database Archiving Software 6.31 allows remote attackers to execute arbitrary code via u...
CVE-2011-5025Multiple cross-site scripting (XSS) vulnerabilities in the wiki application in Yaws 1.88 allow remote attackers to injec...
CVE-2011-5024Cross-site scripting (XSS) vulnerability in mmsearch/design in the Mailman/htdig integration patch for Mailman allows re...
CVE-2011-5023Cross-site scripting (XSS) vulnerability in Pligg CMS 1.1.4 allows remote attackers to inject arbitrary web script or HT...
CVE-2011-5022SQL injection vulnerability in search.php in Pligg CMS 1.1.2 allows remote attackers to execute arbitrary SQL commands v...
CVE-2011-5026Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d a...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now