2011 CVE Vulnerabilities
4,899 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-2011 | — | — | 1.8% | Oct 12, 2011 | Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Serve... |
| CVE-2011-2009 | — | — | 5.6% | Oct 12, 2011 | Untrusted search path vulnerability in Windows Media Center in Microsoft Windows Vista SP2 and Windows 7 Gold and SP1, a... |
| CVE-2011-2008 | — | — | 21.3% | Oct 12, 2011 | Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of ... |
| CVE-2011-2007 | — | — | 23.6% | Oct 12, 2011 | Microsoft Host Integration Server (HIS) 2004 SP1, 2006 SP1, 2009, and 2010 allows remote attackers to cause a denial of ... |
| CVE-2011-2005 | HIGH | 7.8 | 31.8% | Oct 12, 2011 | afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly valid... |
| CVE-2011-2003 | — | — | 27.8% | Oct 12, 2011 | Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, W... |
| CVE-2011-2002 | — | — | 1.8% | Oct 12, 2011 | win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windo... |
| CVE-2011-2001 | — | — | 43.1% | Oct 12, 2011 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2011-2000 | — | — | 18.9% | Oct 12, 2011 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2011-1999 | — | — | 28.0% | Oct 12, 2011 | Microsoft Internet Explorer 8 does not properly allocate and access memory, which allows remote attackers to execute arb... |
| CVE-2011-1998 | — | — | 21.2% | Oct 12, 2011 | Microsoft Internet Explorer 9 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2011-1997 | — | — | 14.5% | Oct 12, 2011 | Microsoft Internet Explorer 6 does not properly handle objects in memory, which allows remote attackers to execute arbit... |
| CVE-2011-1996 | — | — | 60.5% | Oct 12, 2011 | Microsoft Internet Explorer 6 through 8 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2011-1995 | — | — | 28.9% | Oct 12, 2011 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2011-1993 | — | — | 17.6% | Oct 12, 2011 | Microsoft Internet Explorer 6 through 9 does not properly handle objects in memory, which allows remote attackers to exe... |
| CVE-2011-1985 | HIGH | 7.1 | 2.4% | Oct 12, 2011 | win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, W... |
| CVE-2011-1969 | — | — | 17.3% | Oct 12, 2011 | Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 provides the MicrosoftClient.jar... |
| CVE-2011-1897 | — | — | 8.4% | Oct 12, 2011 | Cross-site scripting (XSS) vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update... |
| CVE-2011-1896 | — | — | 8.3% | Oct 12, 2011 | Cross-site scripting (XSS) vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update... |
| CVE-2011-1895 | — | — | 11.1% | Oct 12, 2011 | CRLF injection vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, Update 1, Update 2, and SP1 ... |
| CVE-2011-1253 | — | — | 13.2% | Oct 12, 2011 | Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.0.60831, does not properly ... |
| CVE-2011-1247 | — | — | 11.1% | Oct 12, 2011 | Untrusted search path vulnerability in the Microsoft Active Accessibility component in Microsoft Windows XP SP2 and SP3,... |
| CVE-2011-4030 | — | — | 2.0% | Oct 10, 2011 | The CMFEditions component 2.x in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2 does not prevent the KwAsAttribut... |
| CVE-2011-3599 | — | — | 2.3% | Oct 10, 2011 | The Crypt::DSA (aka Crypt-DSA) module 1.17 and earlier for Perl, when /dev/random is absent, uses the Data::Random modul... |
| CVE-2011-3587 | — | — | 78.5% | Oct 10, 2011 | Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, a... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now