2011 CVE Vulnerabilities
4,898 CVEs published in 2011.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-1911 | — | — | 1.5% | Sep 20, 2011 | JasperServer in JasperReports Server Community Project 3.7.0 and 3.7.1 uses a predictable _flowExecutionKey parameter, w... |
| CVE-2011-1510 | — | — | 1.1% | Sep 20, 2011 | Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus (SDP) before 8012 allows ... |
| CVE-2011-1509 | — | — | 0.8% | Sep 20, 2011 | The encryptPassword function in Login.js in ManageEngine ServiceDesk Plus (SDP) 8012 and earlier uses a Caesar cipher fo... |
| CVE-2011-3348 | — | — | 22.4% | Sep 20, 2011 | The mod_proxy_ajp module in the Apache HTTP Server before 2.2.21, when used with mod_proxy_balancer in certain configura... |
| CVE-2011-2925 | — | — | 0.4% | Sep 20, 2011 | Cumin in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0 records broker authentication credentials in a log f... |
| CVE-2011-3576 | — | — | 0.9% | Sep 19, 2011 | Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 8.5.2 allows remote attackers to inject arbitrary web scrip... |
| CVE-2011-3575 | — | — | 11.1% | Sep 19, 2011 | Stack-based buffer overflow in the NSFComputeEvaluateExt function in Nnotes.dll in IBM Lotus Domino 8.5.2 allows remote ... |
| CVE-2011-3424 | — | — | 1.3% | Sep 19, 2011 | Session fixation vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Server before... |
| CVE-2011-3423 | — | — | 1.3% | Sep 19, 2011 | Cross-site scripting (XSS) vulnerability in the Managed File Transfer server in TIBCO Managed File Transfer Internet Ser... |
| CVE-2011-3345 | — | — | 0.3% | Sep 19, 2011 | ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel package in the InfiniBand driver implementatio... |
| CVE-2011-3234 | — | — | 1.9% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not properly handle boxes, which allows remote attackers to cause a denial of ser... |
| CVE-2011-2875 | — | — | 1.3% | Sep 19, 2011 | Google V8, as used in Google Chrome before 14.0.835.163, does not properly perform object sealing, which allows remote a... |
| CVE-2011-2874 | — | — | 0.7% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not perform an expected pin operation for a self-signed certificate during a sess... |
| CVE-2011-2864 | — | — | 1.3% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not properly handle Tibetan characters, which allows remote attackers to cause a ... |
| CVE-2011-2862 | — | — | 0.9% | Sep 19, 2011 | Google V8, as used in Google Chrome before 14.0.835.163, does not properly restrict access to built-in objects, which ha... |
| CVE-2011-2861 | — | — | 1.5% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not properly handle strings in PDF documents, which allows remote attackers to ha... |
| CVE-2011-2860 | — | — | 1.8% | Sep 19, 2011 | Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service o... |
| CVE-2011-2859 | — | — | 0.9% | Sep 19, 2011 | Google Chrome before 14.0.835.163 uses incorrect permissions for non-gallery pages, which has unspecified impact and att... |
| CVE-2011-2858 | — | — | 1.3% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not properly handle triangle arrays, which allows remote attackers to cause a den... |
| CVE-2011-2857 | — | — | 1.6% | Sep 19, 2011 | Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service o... |
| CVE-2011-2856 | — | — | 0.9% | Sep 19, 2011 | Google V8, as used in Google Chrome before 14.0.835.163, allows remote attackers to bypass the Same Origin Policy via un... |
| CVE-2011-2855 | — | — | 1.6% | Sep 19, 2011 | Google Chrome before 14.0.835.163 does not properly handle Cascading Style Sheets (CSS) token sequences, which allows re... |
| CVE-2011-2854 | — | — | 1.7% | Sep 19, 2011 | Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service o... |
| CVE-2011-2853 | — | — | 1.3% | Sep 19, 2011 | Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service o... |
| CVE-2011-2852 | — | — | 1.2% | Sep 19, 2011 | Off-by-one error in Google V8, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial o... |
Check if your code is affected by 2011 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now