CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2011-4806

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in main.php in phpAlbum 0.4.1.16 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) var1 and (2) keyword parameters.

    Published: 14 Dec 2011
    4.3
    Medium

    CVE-2011-4809

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the HM Community (com_hmcommunity) component before 1.01 for Joomla! allow remote attackers to inject arbitrary web script or HTML via the (1) language[], (2) university[], (3) persent[], (4) company_name[], (5) designation[], (6) music[], (7) books[], (8) movies[], (9) games[], (10) syp[], (11) ft[], and (12) fa[] parameters in a save task for a profile to index.php. NOTE: some of these details are obtained from third party information.

    Published: 14 Dec 2011
    5
    Medium

    CVE-2011-4810

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in WHMCompleteSolution (WHMCS) 3.x and 4.x allow remote attackers to read arbitrary files via the templatefile parameter to (1) submitticket.php and (2) downloads.php, and (3) the report parameter to admin/reports.php.

    Published: 14 Dec 2011
    7.5
    High

    CVE-2011-4811

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in pokaz_podkat.php in BestShopPro allows remote attackers to execute arbitrary SQL commands via the str parameter.

    Published: 14 Dec 2011
    4.3
    Medium

    CVE-2011-4812

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in nowosci.php in BestShopPro allows remote attackers to inject arbitrary web script or HTML via the str parameter.

    Published: 14 Dec 2011
    5
    Medium

    CVE-2011-4813

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in clientarea.php in WHMCompleteSolution (WHMCS) 3.x.x allows remote attackers to read arbitrary files via an invalid action and a ../ (dot dot slash) in the templatefile parameter.

    Published: 14 Dec 2011
    4.3
    Medium

    CVE-2011-4814

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr 3.1.0 RC and probably earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php, (2) admin/boxes.php, (3) comm/clients.php, (4) commande/index.php; and the optioncss parameter to (5) admin/ihm.php and (6) user/home.php.

    Published: 14 Dec 2011
    9.3
    Critical

    CVE-2011-1508

    Last Modified: 11 Apr 2025

    Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, does not properly manage memory allocations for function pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted Publisher file, aka "Publisher Function Pointer Overwrite Vulnerability."

    Published: 14 Dec 2011
    7.2
    High

    CVE-2011-2010

    Last Modified: 11 Apr 2025

    The Microsoft Office Input Method Editor (IME) for Simplified Chinese in Microsoft Pinyin IME 2010, Office Pinyin SimpleFast Style 2010, and Office Pinyin New Experience Style 2010 does not properly restrict access to configuration options, which allows local users to gain privileges via the Microsoft Pinyin (aka MSPY) IME toolbar, aka "Pinyin IME Elevation Vulnerability."

    Published: 14 Dec 2011
    7.2
    High

    CVE-2011-2018

    Last Modified: 11 Apr 2025

    The kernel in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, and Windows 7 Gold and SP1 does not properly initialize objects, which allows local users to gain privileges via a crafted application, aka "Windows Kernel Exception Handler Vulnerability."

    Published: 14 Dec 2011
    8.8
    High

    CVE-2011-3406

    Last Modified: 11 Apr 2025

    Buffer overflow in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote authenticated users to execute arbitrary code via a crafted query that leverages incorrect memory initialization, aka "Active Directory Buffer Overflow Vulnerability."

    Published: 14 Dec 2011
    7.2
    High

    CVE-2011-3408

    Last Modified: 11 Apr 2025

    Csrsrv.dll in the Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly check permissions for sending inter-process device-event messages from low-integrity processes to high-integrity processes, which allows local users to gain privileges via a crafted application, aka "CSRSS Local Privilege Elevation Vulnerability."

    Published: 14 Dec 2011
    4.3
    Medium

    CVE-2011-4580

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Red Hat JBoss Enterprise Portal Platform before 5.2.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 14 Dec 2011
    9
    Critical

    CVE-2011-4800

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in Serv-U FTP Server before 11.1.0.5 allows remote authenticated users to read and write arbitrary files, and list and create arbitrary directories, via a "..:/" (dot dot colon forward slash) in the (1) list, (2) put, or (3) get commands.

    Published: 14 Dec 2011
    7.5
    High

    CVE-2011-4801

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in akeyActivationLogin.do in Authenex Web Management Control in Authenex Strong Authentication System (ASAS) Server 3.1.0.2 and 3.1.0.3 allows remote attackers to execute arbitrary SQL commands via the username parameter.

    Published: 14 Dec 2011
    7.5
    High

    CVE-2011-4808

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the HM Community (com_hmcommunity) component before 1.01 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a fnd_home action to index.php.

    Published: 14 Dec 2011
    9.3
    Critical

    CVE-2011-3397

    Last Modified: 11 Apr 2025

    The Microsoft Time component in DATIME.DLL in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted web site that leverages an unspecified "binary behavior" in Internet Explorer, aka "Microsoft Time Remote Code Execution Vulnerability."

    Published: 14 Dec 2011
    9.3
    Critical

    CVE-2011-3413

    Last Modified: 11 Apr 2025

    Microsoft PowerPoint 2007 SP2; Office 2008 for Mac; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2; and PowerPoint Viewer 2007 SP2 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an invalid OfficeArt record in a PowerPoint document, aka "OfficeArt Shape RCE Vulnerability."

    Published: 14 Dec 2011
    4.9
    Medium

    CVE-2011-4622

    Last Modified: 11 Apr 2025

    The create_pit_timer function in arch/x86/kvm/i8254.c in KVM 83, and possibly other versions, does not properly handle when Programmable Interval Timer (PIT) interrupt requests (IRQs) when a virtual interrupt controller (irqchip) is not available, which allows local users to cause a denial of service (NULL pointer dereference) by starting a timer.

    Published: 14 Dec 2011
    6.5
    Medium

    CVE-2011-4802

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Dolibarr 3.1.0 RC and probably earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) sortfield, (2) sortorder, and (3) sall parameters to user/index.php and (b) user/group/index.php; the id parameter to (4) info.php, (5) perms.php, (6) param_ihm.php, (7) note.php, and (8) fiche.php in user/; and (9) rowid parameter to admin/boxes.php.

    Published: 14 Dec 2011
    5
    Medium

    CVE-2011-4807

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in main.php in phpAlbum 0.4.1.16 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the var1 parameter.

    Published: 14 Dec 2011
    5
    Medium

    CVE-2011-3903

    Last Modified: 11 Apr 2025

    Google Chrome before 16.0.912.63 does not properly perform regex matching, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    4.3
    Medium

    CVE-2011-3907

    Last Modified: 11 Apr 2025

    The view-source feature in Google Chrome before 16.0.912.63 allows remote attackers to spoof the URL bar via unspecified vectors.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3908

    Last Modified: 11 Apr 2025

    Google Chrome before 16.0.912.63 does not properly parse SVG documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3909

    Last Modified: 11 Apr 2025

    The Cascading Style Sheets (CSS) implementation in Google Chrome before 16.0.912.63 on 64-bit platforms does not properly manage property arrays, which allows remote attackers to cause a denial of service (memory corruption) via unspecified vectors.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3910

    Last Modified: 11 Apr 2025

    Google Chrome before 16.0.912.63 does not properly handle YUV video frames, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3911

    Last Modified: 11 Apr 2025

    Google Chrome before 16.0.912.63 does not properly handle PDF documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3912

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG filters.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3915

    Last Modified: 11 Apr 2025

    Buffer overflow in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to PDF fonts.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3916

    Last Modified: 11 Apr 2025

    Google Chrome before 16.0.912.63 does not properly handle PDF cross references, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3917

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in FileWatcher in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3906

    Last Modified: 11 Apr 2025

    The PDF parser in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3913

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to Range handling.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3914

    Last Modified: 11 Apr 2025

    The internationalization (aka i18n) functionality in Google V8, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an out-of-bounds write.

    Published: 13 Dec 2011
    7.5
    High

    CVE-2011-3904

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to bidirectional text (aka bidi) handling.

    Published: 13 Dec 2011
    9.3
    Critical

    CVE-2011-4201

    Last Modified: 11 Apr 2025

    remote_support.cgi in the Tadasoft Restorepoint 3.2 evaluation image allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) pid1 or (2) pid2 parameter in a stop_remote_support action.

    Published: 13 Dec 2011
    7.2
    High

    CVE-2011-4202

    Last Modified: 11 Apr 2025

    The Tadasoft Restorepoint 3.2 evaluation image uses weak permissions (www write access) for unspecified scripts, which allows local users to gain privileges by modifying a script file.

    Published: 13 Dec 2011
    9.3
    Critical

    CVE-2011-4266

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in FFFTP before 1.98d allows local users to gain privileges via a Trojan horse executable file in a directory that is accessed for reading an extensionless file, as demonstrated by executing the README.exe file when a user attempts to access the README file, a different vulnerability than CVE-2011-3991.

    Published: 13 Dec 2011
    3.6
    Low

    CVE-2011-4339

    Last Modified: 11 Apr 2025

    ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux, Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID file, which allows local users to kill arbitrary processes by writing to this file.

    Published: 13 Dec 2011
    5
    Medium

    CVE-2011-3905

    Last Modified: 11 Apr 2025

    libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 13 Dec 2011
    Unknown

    CVE-2011-1161

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-1160, CVE-2011-1162. Reason: This candidate was withdrawn by its CNA. Further investigation showed that only two candidates, CVE-2011-1160 and CVE-2011-1162, were needed for the set of security issues in question. Notes: none

    Published: 12 Dec 2011
    Unknown

    CVE-2011-4359

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4343. Reason: This candidate is a duplicate of CVE-2011-4343. Notes: All CVE users should reference CVE-2011-4343 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 Dec 2011
    Unknown

    CVE-2011-4323

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-2726. Reason: This candidate is a duplicate of CVE-2011-2726. Notes: All CVE users should reference CVE-2011-2726 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 Dec 2011
    Unknown

    CVE-2011-3633

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4062. Reason: This candidate is a duplicate of CVE-2011-4062. Notes: All CVE users should reference CVE-2011-4062 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 12 Dec 2011
    5
    Medium

    CVE-2011-4603

    Last Modified: 11 Apr 2025

    The silc_channel_message function in ops.c in the SILC protocol plugin in libpurple in Pidgin before 2.10.1 does not perform the expected UTF-8 validation on message data, which allows remote attackers to cause a denial of service (application crash) via a crafted message, a different vulnerability than CVE-2011-3594.

    Published: 11 Dec 2011
    4.6
    Medium

    CVE-2011-4349

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in (1) cd-mapping-db.c and (2) cd-device-db.c in colord before 0.1.15 allow local users to execute arbitrary SQL commands via vectors related to color devices and (a) device id, (b) property, or (c) profile id.

    Published: 10 Dec 2011
    7.5
    High

    CVE-2011-4357

    Last Modified: 11 Apr 2025

    Format string vulnerability in the p_cgi_error function in python/neo_cgi.c in the Python CGI Kit (neo_cgi) module for Clearsilver 0.10.5 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers that are not properly handled when creating CGI error messages using the cgi_error API function.

    Published: 10 Dec 2011
    5
    Medium

    CVE-2011-4602

    Last Modified: 11 Apr 2025

    The XMPP protocol plugin in libpurple in Pidgin before 2.10.1 does not properly handle missing fields in (1) voice-chat and (2) video-chat stanzas, which allows remote attackers to cause a denial of service (application crash) via a crafted message.

    Published: 10 Dec 2011
    6.8
    Medium

    CVE-2011-4604

    Last Modified: 11 Apr 2025

    The bat_socket_read function in net/batman-adv/icmp_socket.c in the Linux kernel before 3.3 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted batman-adv ICMP packet.

    Published: 10 Dec 2011
    5
    Medium

    CVE-2011-4601

    Last Modified: 11 Apr 2025

    family_feedbag.c in the oscar protocol plugin in libpurple in Pidgin before 2.10.1 does not perform the expected UTF-8 validation on message data, which allows remote attackers to cause a denial of service (application crash) via a crafted (1) AIM or (2) ICQ message associated with buddy-list addition.

    Published: 10 Dec 2011