2011 CVE Vulnerabilities

4,899 CVEs published in 2011.

CVE IDSeverityCVSSDescription
CVE-2011-0939——Unspecified vulnerability in Cisco IOS 12.4, 15.0, and 15.1, and IOS XE 2.5.x through 3.2.x, allows remote attackers to ...
CVE-2011-3975——A certain HTC update for Android 2.3.4 build GRJ22, when the Sense interface is used on the HTC EVO 3D, EVO 4G, ThunderB...
CVE-2011-3974——Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8...
CVE-2011-3973——cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of servi...
CVE-2011-3371——Multiple cross-site scripting (XSS) vulnerabilities in include/functions.php in PunBB before 1.3.6 allow remote attacker...
CVE-2011-3362——Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8...
CVE-2011-2411——Unspecified vulnerability on HP NonStop Servers with software H06.x through H06.23.00 and J06.x through J06.12.00, when ...
CVE-2011-2674——BaserCMS before 1.6.12 does not properly restrict additions to the membership of the operators group, which allows remot...
CVE-2011-2673——Cross-site scripting (XSS) vulnerability in BaserCMS before 1.6.13.2 allows remote attackers to inject arbitrary web scr...
CVE-2011-0554——The management console in Symantec IM Manager before 8.4.18 allows remote attackers to execute arbitrary code via unspec...
CVE-2011-0553——SQL injection vulnerability in the management console in Symantec IM Manager before 8.4.18 allows remote attackers to ex...
CVE-2011-0552——Multiple cross-site scripting (XSS) vulnerabilities in the management console in Symantec IM Manager before 8.4.18 allow...
CVE-2011-3580——IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to obtain configuration information via a d...
CVE-2011-3579——server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary fil...
CVE-2011-3369——The add_conversation function in conversations.c in EtherApe before 0.9.12 allows remote attackers to cause a denial of ...
CVE-2011-3010——Multiple cross-site scripting (XSS) vulnerabilities in TWiki before 5.1.0 allow remote attackers to inject arbitrary web...
CVE-2011-2998——Integer underflow in Mozilla Firefox 3.6.x before 3.6.23 allows remote attackers to cause a denial of service (applicati...
CVE-2011-3867——Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-2998. Reason: This candidate is a duplicate of...
CVE-2011-3866——Mozilla Firefox before 7.0 and SeaMonkey before 2.4 do not properly restrict availability of motion data events, which m...
CVE-2011-3504——The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to e...
CVE-2011-3232——YARR, as used in Mozilla Firefox before 7.0, Thunderbird before 7.0, and SeaMonkey before 2.4, allows remote attackers t...
CVE-2011-3005——Use-after-free vulnerability in Mozilla Firefox 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allows r...
CVE-2011-3004——The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappe...
CVE-2011-3003——Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (application cra...
CVE-2011-3002——Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not va...

Check if your code is affected by 2011 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now