2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-4173 | — | — | 0.6% | Oct 24, 2011 | Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers ... |
| CVE-2011-4172 | — | — | 0.9% | Oct 24, 2011 | Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject ar... |
| CVE-2011-4171 | — | — | 1.3% | Oct 24, 2011 | Cross-site scripting (XSS) vulnerability in content/error.jsp in IBM WebSphere ILOG Rule Team Server 7.1.1 allows remote... |
| CVE-2011-3984 | — | — | 1.4% | Oct 24, 2011 | Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitra... |
| CVE-2011-3983 | — | — | 1.7% | Oct 24, 2011 | Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitra... |
| CVE-2011-3615 | — | — | 1.1% | Oct 24, 2011 | Multiple SQL injection vulnerabilities in Simple Machines Forum (SMF) before 1.1.15 and 2.x before 2.0.1 allow remote at... |
| CVE-2011-3383 | — | — | 1.0% | Oct 24, 2011 | Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitra... |
| CVE-2011-2656 | — | — | 3.5% | Oct 24, 2011 | Unspecified vulnerability in ZfHSrvr.exe in Novell ZENworks Handheld Management (ZHM) 7 allows remote attackers to execu... |
| CVE-2011-2655 | — | — | 3.5% | Oct 24, 2011 | Unspecified vulnerability in ZfHSrvr.exe in Novell ZENworks Handheld Management (ZHM) 7 allows remote attackers to execu... |
| CVE-2011-4170 | — | — | 0.9% | Oct 23, 2011 | Cross-site scripting (XSS) vulnerability in the theme_adium_append_message function in empathy-theme-adium.c in the Adiu... |
| CVE-2011-3635 | — | — | 1.3% | Oct 23, 2011 | Cross-site scripting (XSS) vulnerability in the theme_adium_append_message function in empathy-theme-adium.c in the Adiu... |
| CVE-2011-3163 | — | — | 0.4% | Oct 23, 2011 | HP MFP Digital Sending Software 4.9x through 4.91.21 allows local users to obtain sensitive workflow-metadata informatio... |
| CVE-2011-1478 | — | — | 1.1% | Oct 23, 2011 | The napi_reuse_skb function in net/core/dev.c in the Generic Receive Offload (GRO) implementation in the Linux kernel be... |
| CVE-2011-2060 | — | — | 0.3% | Oct 22, 2011 | The platform-sw component on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.2 before 8.2(5... |
| CVE-2011-2059 | — | — | 1.6% | Oct 22, 2011 | The ipv6 component in Cisco IOS before 15.1(4)M1.3 allows remote attackers to conduct fingerprinting attacks and obtain ... |
| CVE-2011-2058 | HIGH | 7.5 | 1.8% | Oct 22, 2011 | The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle an external loop between a pa... |
| CVE-2011-2057 | HIGH | 7.5 | 1.8% | Oct 22, 2011 | The cat6000-dot1x component in Cisco IOS 12.2 before 12.2(33)SXI7 does not properly handle (1) a loop between a dot1x en... |
| CVE-2011-2042 | — | — | 1.1% | Oct 22, 2011 | The Sybase SQL Anywhere database component in Cisco CiscoWorks Common Services 3.x and 4.x before 4.1 allows remote atta... |
| CVE-2011-1640 | HIGH | 7.5 | 1.8% | Oct 22, 2011 | The ethernet-lldp component in Cisco IOS 12.2 before 12.2(33)SXJ1 does not properly support a large number of LLDP Manag... |
| CVE-2011-4026 | — | — | 2.1% | Oct 21, 2011 | SQL injection vulnerability in thanks.php in NexusPHP 1.5 allows remote attackers to execute arbitrary SQL commands via ... |
| CVE-2011-4024 | — | — | 4.7% | Oct 21, 2011 | Cross-site scripting (XSS) vulnerability in ocsinventory in OCS Inventory NG 2.0.1 and earlier allows remote attackers t... |
| CVE-2011-3988 | — | — | 2.3% | Oct 21, 2011 | SQL injection vulnerability in data/class/SC_Query.php in EC-CUBE 2.11.0 through 2.11.2 allows remote attackers to execu... |
| CVE-2011-2713 | — | — | 2.9% | Oct 21, 2011 | oowriter in OpenOffice.org 3.3.0 and LibreOffice before 3.4.3 allows user-assisted remote attackers to cause a denial of... |
| CVE-2011-2677 | — | — | 1.2% | Oct 21, 2011 | Cybozu Office before 8.0.0 allows remote authenticated users to bypass intended access restrictions and access sensitive... |
| CVE-2011-4063 | — | — | 2.4% | Oct 21, 2011 | chan_sip.c in the SIP channel driver in Asterisk Open Source 1.8.x before 1.8.7.1 and 10.x before 10.0.0-rc1 does not pr... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now