2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-3202 | MEDIUM | 6.1 | 0.8% | Jan 14, 2020 | A Cross-Site Scripting (XSS) vulnerability exists in the g parameter to index.php in Jcow CMS 4.2 and earlier. |
| CVE-2011-3183 | MEDIUM | 6.1 | 0.7% | Jan 14, 2020 | A Cross-Site Scripting (XSS) vulnerability exists in the rcID parameter in Concrete CMS 5.4.1.1 and earlier. |
| CVE-2011-2934 | HIGH | 8.8 | 0.5% | Jan 14, 2020 | A Cross Site Request Forgery (CSRF) vulnerability exists in the administrator functions in WebsiteBaker 2.8.1 and earlie... |
| CVE-2011-2933 | HIGH | 7.2 | 1.1% | Jan 14, 2020 | An Arbitrary File Upload vulnerability exists in admin/media/upload.php in WebsiteBaker 2.8.1 and earlier due to a failu... |
| CVE-2011-2706 | MEDIUM | 6.1 | 0.7% | Jan 14, 2020 | A Cross-Site Scripting (XSS) vulnerability exists in the reorder administrator functions in sNews 1.71. |
| CVE-2011-3203 | CRITICAL | 9.8 | 2.4% | Jan 14, 2020 | A Code Execution vulnerability exists the attachment parameter to index.php in Jcow CMS 4.x to 4.2 and 5.2 to 5.2. |
| CVE-2011-2670 | MEDIUM | 6.1 | 0.7% | Jan 13, 2020 | Mozilla Firefox before 3.6 is vulnerable to XSS via the rendering of Cascading Style Sheets |
| CVE-2011-5020 | CRITICAL | 9.8 | 1.0% | Jan 10, 2020 | An SQL Injection vulnerability exists in the ID parameter in Online TV Database 2011. |
| CVE-2011-4595 | MEDIUM | 6.1 | 2.4% | Jan 10, 2020 | Pretty-Link WordPress plugin 1.5.2 has XSS |
| CVE-2011-5266 | CRITICAL | 9.8 | 1.2% | Jan 8, 2020 | Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass. |
| CVE-2011-5250 | MEDIUM | 6.5 | 0.7% | Jan 8, 2020 | Snare for Linux before 1.7.0 has CSRF in the web interface. |
| CVE-2011-5247 | HIGH | 7.5 | 1.1% | Jan 8, 2020 | Snare for Linux before 1.7.0 has password disclosure because the rendered page contains the field RemotePassword. |
| CVE-2011-5018 | MEDIUM | 6.1 | 1.0% | Jan 8, 2020 | Koala Framework before 2011-11-21 has XSS via the request_uri parameter. |
| CVE-2011-3585 | MEDIUM | 4.7 | 0.3% | Dec 31, 2019 | Multiple race conditions in the (1) mount.cifs and (2) umount.cifs programs in Samba 3.6 allow local users to cause a de... |
| CVE-2011-1474 | MEDIUM | 5.5 | 0.4% | Dec 26, 2019 | A locally locally exploitable DOS vulnerability was found in pax-linux versions 2.6.32.33-test79.patch, 2.6.38-test3.pat... |
| CVE-2011-2717 | CRITICAL | 9.8 | 3.9% | Nov 27, 2019 | The DHCPv6 client (dhcp6c) as used in the dhcpv6 project through 2011-07-25 allows remote DHCP servers to execute arbitr... |
| CVE-2011-2523 | CRITICAL | 9.8 | 96.2% | Nov 27, 2019 | vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp. |
| CVE-2011-2515 | MEDIUM | 5.3 | 0.4% | Nov 27, 2019 | PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation o... |
| CVE-2011-2480 | HIGH | 7.5 | 1.6% | Nov 27, 2019 | Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain no... |
| CVE-2011-2207 | MEDIUM | 5.3 | 1.2% | Nov 27, 2019 | dirmngr before 2.1.0 improperly handles certain system calls, which allows remote attackers to cause a denial of service... |
| CVE-2011-2187 | HIGH | 7.8 | 0.5% | Nov 27, 2019 | xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS ... |
| CVE-2011-2177 | HIGH | 7.8 | 2.0% | Nov 27, 2019 | OpenOffice.org v3.3 allows execution of arbitrary code with the privileges of the user running the OpenOffice.org suite ... |
| CVE-2011-4310 | HIGH | 7.5 | 1.1% | Nov 26, 2019 | The news module in CMSMS before 1.9.4.3 allows remote attackers to corrupt new articles. |
| CVE-2011-1939 | CRITICAL | 9.8 | 3.9% | Nov 26, 2019 | SQL injection vulnerability in Zend Framework 1.10.x before 1.10.9 and 1.11.x before 1.11.6 when using non-ASCII-compati... |
| CVE-2011-1934 | MEDIUM | 4.3 | 1.0% | Nov 26, 2019 | lilo-uuid-diskid causes lilo.conf to be world-readable in lilo 23.1. |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now