2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-4096 | — | — | 38.3% | Nov 17, 2011 | The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause ... |
| CVE-2011-4073 | — | — | 2.2% | Nov 17, 2011 | Use-after-free vulnerability in the cryptographic helper handler functionality in Openswan 2.3.0 through 2.6.36 allows r... |
| CVE-2011-3646 | — | — | 1.5% | Nov 17, 2011 | phpmyadmin.css.php in phpMyAdmin 3.4.x before 3.4.6 allows remote attackers to obtain sensitive information via an array... |
| CVE-2011-3627 | — | — | 2.7% | Nov 17, 2011 | The bytecode engine in ClamAV before 0.97.3 allows remote attackers to cause a denial of service (crash) via vectors rel... |
| CVE-2011-3380 | — | — | 2.4% | Nov 17, 2011 | Openswan 2.6.29 through 2.6.35 allows remote attackers to cause a denial of service (NULL pointer dereference and pluto ... |
| CVE-2011-2770 | — | — | 1.2% | Nov 17, 2011 | Cross-site scripting (XSS) vulnerability in man2html.cgi.c in man2html 1.6, and possibly other version, allows remote at... |
| CVE-2011-4156 | — | — | 2.5% | Nov 16, 2011 | Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0x and 9.1x allows remote attackers to in... |
| CVE-2011-4155 | — | — | 2.5% | Nov 16, 2011 | Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0x and 9.1x allows remote attackers to in... |
| CVE-2011-4456 | — | — | — | Nov 16, 2011 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4313. Reason: This candidate is a reservation ... |
| CVE-2011-4158 | — | — | 1.7% | Nov 16, 2011 | Unspecified vulnerability in HP Directories Support for ProLiant Management Processors 3.10 and 3.20 for Integrated Ligh... |
| CVE-2011-4157 | — | — | 13.4% | Nov 16, 2011 | Stack-based buffer overflow in hydra.exe in HP SAN/iQ before 9.5 on the HP StorageWorks P4000 Virtual SAN Appliance allo... |
| CVE-2011-1516 | — | — | 3.7% | Nov 15, 2011 | The kSBXProfileNoNetwork and kSBXProfileNoInternet sandbox profiles in Apple Mac OS X 10.5.x through 10.7.x do not propa... |
| CVE-2011-4118 | — | — | 1.8% | Nov 15, 2011 | Mahara before 1.4.1, when MNet (aka the Moodle network feature) is used, allows remote authenticated users to gain privi... |
| CVE-2011-2774 | — | — | 1.1% | Nov 15, 2011 | The "Reply to message" feature in Mahara 1.3.x and 1.4.x before 1.4.1 allows remote authenticated users to read the mess... |
| CVE-2011-2773 | — | — | 1.0% | Nov 15, 2011 | Cross-site request forgery (CSRF) vulnerability in Mahara before 1.4.1 allows remote attackers to hijack the authenticat... |
| CVE-2011-2772 | — | — | 2.4% | Nov 15, 2011 | The get_dataroot_image_path function in lib/file.php in Mahara before 1.4.1 does not properly validate uploaded image fi... |
| CVE-2011-2771 | — | — | 1.9% | Nov 15, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in Mahara before 1.4.1 allow remote attackers to inject arbitrary we... |
| CVE-2011-4436 | — | — | 0.8% | Nov 12, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in the administrative web interface on the Dell KACE K2000 System De... |
| CVE-2011-4048 | — | — | 1.2% | Nov 12, 2011 | The Dell KACE K2000 System Deployment Appliance has a default username and password for the read-only reporting account,... |
| CVE-2011-4047 | — | — | 3.5% | Nov 12, 2011 | The Dell KACE K2000 System Deployment Appliance allows remote attackers to execute arbitrary commands by leveraging data... |
| CVE-2011-4046 | — | — | 1.4% | Nov 12, 2011 | The Dell KACE K2000 System Deployment Appliance stores the recovery account password in cleartext within a PHP script, w... |
| CVE-2011-4435 | — | — | 1.3% | Nov 11, 2011 | The web-server component in the Consolidation and Analysis Engine (CAE) Server in DB2 Query Monitor in IBM DB2 Tools 2.3... |
| CVE-2011-4434 | — | — | 2.0% | Nov 11, 2011 | Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1 do not properly enforce AppLocker rules, which al... |
| CVE-2011-3376 | — | — | 0.7% | Nov 11, 2011 | org/apache/catalina/core/DefaultInstanceManager.java in Apache Tomcat 7.x before 7.0.22 does not properly restrict Conta... |
| CVE-2011-1375 | — | — | 0.4% | Nov 11, 2011 | IBM AIX 6.1 and 7.1 does not restrict the wpar_limits_config and wpar_limits_modify system calls, which allows local use... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now