2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-3437Integer signedness error in Apple Type Services (ATS) in Apple Mac OS X 10.7 before 10.7.2 allows remote attackers to ex...
CVE-2011-3436Open Directory in Apple Mac OS X 10.7 before 10.7.2 does not require a user to provide the current password before chang...
CVE-2011-3435Open Directory in Apple Mac OS X 10.7 before 10.7.2 allows local users to read the password data of arbitrary users via ...
CVE-2011-3434The WiFi component in Apple iOS before 5 stores WiFi credentials in an unspecified file, which makes it easier for remot...
CVE-2011-3432The UIKit Alerts component in Apple iOS before 5 allows remote attackers to cause a denial of service (device hang) via ...
CVE-2011-3431The Home screen component in Apple iOS before 5 does not properly support a certain application-switching gesture, which...
CVE-2011-3430The Settings component in Apple iOS before 5, when a configuration profile is used for a locale other than English, does...
CVE-2011-3429The Settings component in Apple iOS before 5 stores a cleartext parental-restrictions passcode in an unspecified file, w...
CVE-2011-3427The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash...
CVE-2011-3426Cross-site scripting (XSS) vulnerability in Safari in Apple iOS before 5 allows remote web servers to inject arbitrary w...
CVE-2011-3261Double free vulnerability in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cau...
CVE-2011-3260Buffer overflow in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denia...
CVE-2011-3259The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP c...
CVE-2011-3257The Data Access component in Apple iOS before 5 does not properly handle the existence of multiple user accounts on the ...
CVE-2011-3256FreeType 2 before 2.4.7, as used in CoreGraphics in Apple iOS before 5, Mandriva Enterprise Server 5, and possibly other...
CVE-2011-3255CFNetwork in Apple iOS before 5 stores AppleID credentials in an unspecified file, which makes it easier for remote atta...
CVE-2011-3254Cross-site scripting (XSS) vulnerability in Calendar in Apple iOS before 5 allows remote attackers to inject arbitrary w...
CVE-2011-3253CalDAV in Apple iOS before 5 does not validate X.509 certificates for SSL sessions, which allows man-in-the-middle attac...
CVE-2011-3246CFNetwork in Apple iOS before 5.0.1 and Mac OS X 10.7 before 10.7.2 does not properly parse URLs, which allows remote at...
CVE-2011-3245The Keyboards component in Apple iOS before 5 displays the final character of an entered password during a subsequent us...
CVE-2011-3243Cross-site scripting (XSS) vulnerability in WebKit, as used in Apple iOS before 5 and Safari before 5.1.1, allows remote...
CVE-2011-3242The Private Browsing feature in Apple Safari before 5.1.1 on Mac OS X does not properly recognize the Always value of th...
CVE-2011-3231The SSL implementation in Apple Safari before 5.1.1 on Mac OS X before 10.7 accesses uninitialized memory during the pro...
CVE-2011-3230Apple Safari before 5.1.1 on Mac OS X does not enforce an intended policy for file: URLs, which allows remote attackers ...
CVE-2011-3229Directory traversal vulnerability in Apple Safari before 5.1.1 allows remote attackers to execute arbitrary JavaScript c...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now