CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2011-2400

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 29 Jul 2011
    8.3
    High

    CVE-2011-2401

    Last Modified: 11 Apr 2025

    Session fixation vulnerability in HP SiteScope 9.x, 10.x, and 11.x allows remote attackers to hijack web sessions via unspecified vectors.

    Published: 29 Jul 2011
    10
    Critical

    CVE-2011-2960

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in httpsvr.exe 6.0.5.3 in Sunway ForceControl 6.1 SP1, SP2, and SP3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted URL.

    Published: 29 Jul 2011
    10
    Critical

    CVE-2011-2961

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in AngelServer.exe 6.0.11.3 in Sunway pNetPower allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted UDP packet.

    Published: 29 Jul 2011
    9.3
    Critical

    CVE-2011-2962

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in Invensys Wonderware Information Server 3.1, 4.0, and 4.0 SP1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via two unspecified ActiveX controls.

    Published: 29 Jul 2011
    10
    Critical

    CVE-2011-2963

    Last Modified: 11 Apr 2025

    TCPUploadServer.exe in Progea Movicon 11.2 before Build 1084 does not require authentication for critical functions, which allows remote attackers to obtain sensitive information, delete files, execute arbitrary programs, or cause a denial of service (crash) via a crafted packet to TCP port 10651.

    Published: 29 Jul 2011
    10
    Critical

    CVE-2011-2959

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the Open Database Connectivity (ODBC) service (Odbcixv9se.exe) in 7-Technologies Interactive Graphical SCADA System (IGSS) 9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted packet to TCP port 22202.

    Published: 29 Jul 2011
    1.2
    Low

    CVE-2011-2724

    Last Modified: 11 Apr 2025

    The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

    Published: 29 Jul 2011
    9
    Critical

    CVE-2011-2547

    Last Modified: 11 Apr 2025

    The web-based management interface on Cisco SA 500 series security appliances with software before 2.1.19 allows remote authenticated users to execute arbitrary commands via crafted parameters to web forms, aka Bug ID CSCtq65681.

    Published: 28 Jul 2011
    7.8
    High

    CVE-2011-2549

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Cisco IOS XR 4.1.x before 4.1.1 on Cisco Aggregation Services Routers (ASR) 9000 series devices allows remote attackers to cause a denial of service (line-card reload) via an IPv4 packet, aka Bug ID CSCtr26695.

    Published: 28 Jul 2011
    10
    Critical

    CVE-2011-2667

    Last Modified: 11 Apr 2025

    Icihttp.exe in CA Gateway Security for HTTP, as used in CA Gateway Security 8.1 before 8.1.0.69 and CA Total Defense r12, does not properly parse URLs, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and daemon crash) via a malformed request.

    Published: 28 Jul 2011
    5
    Medium

    CVE-2011-2546

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the web-based management interface on Cisco SA 500 series security appliances with software before 2.1.19 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCtq65669.

    Published: 28 Jul 2011
    9.3
    Critical

    CVE-2011-2747

    Last Modified: 11 Apr 2025

    Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote attackers to execute arbitrary code via a crafted image file.

    Published: 28 Jul 2011
    7.8
    High

    CVE-2011-2956

    Last Modified: 11 Apr 2025

    AzeoTech DAQFactory before 5.85 (Build 1842) does not perform authentication for certain signals, which allows remote attackers to cause a denial of service (system reboot or shutdown) via a signal.

    Published: 28 Jul 2011
    6.9
    Medium

    CVE-2011-2957

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Rockwell Automation FactoryTalk Diagnostics Viewer before V2.30.00 (CPR9 SR3) allows local users to execute arbitrary code via a crafted FactoryTalk Diagnostics Viewer (.ftd) configuration file, which triggers memory corruption.

    Published: 28 Jul 2011
    4.3
    Medium

    CVE-2011-1339

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Google Search Appliance before 5.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 28 Jul 2011
    7.5
    High

    CVE-2011-2688

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field.

    Published: 28 Jul 2011
    4.3
    Medium

    CVE-2011-2958

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Ecava IntegraXor before 3.60 (Build 4080) allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 28 Jul 2011
    5
    Medium

    CVE-2011-2524

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in soup-uri.c in SoupServer in libsoup before 2.35.4 allows remote attackers to read arbitrary files via a %2e%2e (encoded dot dot) in a URI.

    Published: 28 Jul 2011
    9.3
    Critical

    CVE-2011-3360

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Wireshark 1.4.x before 1.4.9 and 1.6.x before 1.6.2 allows local users to gain privileges via a Trojan horse Lua script in an unspecified directory.

    Published: 28 Jul 2011
    5.5
    Medium

    CVE-2011-2924

    Last Modified: 21 Nov 2024

    foomatic-rip filter v4.0.12 and prior used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriting arbitrary files accessible with the privileges of the user running the foomatic-rip universal print filter.

    Published: 28 Jul 2011
    5.5
    Medium

    CVE-2011-2923

    Last Modified: 21 Nov 2024

    foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriting arbitrary files accessible with the privileges of the user running the foomatic-rip universal print filter.

    Published: 28 Jul 2011
    2.6
    Low

    CVE-2011-3266

    Last Modified: 11 Apr 2025

    The proto_tree_add_item function in Wireshark 1.6.0 through 1.6.1 and 1.4.0 through 1.4.8, when the IKEv1 protocol dissector is used, allows user-assisted remote attackers to cause a denial of service (infinite loop) via vectors involving a malformed IKE packet and many items in a tree.

    Published: 28 Jul 2011
    5.5
    Medium

    CVE-2011-3353

    Last Modified: 11 Apr 2025

    Buffer overflow in the fuse_notify_inval_entry function in fs/fuse/dev.c in the Linux kernel before 3.1 allows local users to cause a denial of service (BUG_ON and system crash) by leveraging the ability to mount a FUSE filesystem.

    Published: 28 Jul 2011
    Unknown

    CVE-2011-1152

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-3712. Reason: This candidate is a duplicate of CVE-2010-3712. Notes: All CVE users should reference CVE-2010-3712 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 27 Jul 2011
    5
    Medium

    CVE-2011-2488

    Last Modified: 11 Apr 2025

    Joomla! before 1.5.23 does not properly check for errors, which allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2710

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.7.0 allow remote attackers to inject arbitrary web script or HTML via (1) the URI to includes/application.php, reachable through index.php; and, when Internet Explorer or Konqueror is used, (2) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component. NOTE: vector 2 exists because of an incomplete fix for CVE-2011-2509.5.

    Published: 27 Jul 2011
    10
    Critical

    CVE-2011-2884

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in IBM Lotus Symphony 3 before FP3 have unknown impact and attack vectors, related to "critical security vulnerability issues."

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2885

    Last Modified: 11 Apr 2025

    IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application crash) via the sample .doc document that incorporates a user-defined toolbar.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2886

    Last Modified: 11 Apr 2025

    IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application crash) via a .docx document with empty bullet styles for parent bullets.

    Published: 27 Jul 2011
    5
    Medium

    CVE-2011-2889

    Last Modified: 11 Apr 2025

    templates/system/error.php in Joomla! before 1.5.23 might allow remote attackers to obtain sensitive information via unspecified vectors that trigger an undefined value of a certain error field, leading to disclosure of the installation path. NOTE: this might overlap CVE-2011-2488.

    Published: 27 Jul 2011
    5
    Medium

    CVE-2011-2890

    Last Modified: 11 Apr 2025

    The MediaViewMedia class in administrator/components/com_media/views/media/view.html.php in Joomla! 1.5.23 and earlier allows remote attackers to obtain sensitive information via vectors involving the base variable, leading to disclosure of the installation path, a different vulnerability than CVE-2011-2488.

    Published: 27 Jul 2011
    5
    Medium

    CVE-2011-2891

    Last Modified: 11 Apr 2025

    Joomla! 1.6.x before 1.6.2 allows remote attackers to obtain sensitive information via an empty Itemid array parameter to index.php, which reveals the installation path in an error message, a different vulnerability than CVE-2011-2488.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2892

    Last Modified: 11 Apr 2025

    Joomla! 1.6.x before 1.6.2 does not prevent page rendering inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2893

    Last Modified: 11 Apr 2025

    The DataPilot feature in IBM Lotus Symphony 3 before FP3 allows user-assisted remote attackers to cause a denial of service (application crash) via a large .xls spreadsheet with an invalid Value reference.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2509

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.6.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the com_contact component, as demonstrated by the Itemid parameter to index.php; (2) the query string to the com_content component, as demonstrated by the filter_order parameter to index.php; (3) the query string to the com_newsfeeds component, as demonstrated by an arbitrary parameter to index.php; or (4) the option parameter in a reset.request action to index.php; and, when Internet Explorer or Konqueror is used, (5) allow remote attackers to inject arbitrary web script or HTML via the searchword parameter in a search action to index.php in the com_search component.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2887

    Last Modified: 11 Apr 2025

    IBM Lotus Symphony 3 before FP3 on Linux allows remote attackers to cause a denial of service (application crash) via a certain sample document.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-2888

    Last Modified: 11 Apr 2025

    IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application hang) via complex graphics in a presentation.

    Published: 27 Jul 2011
    4.3
    Medium

    CVE-2011-1829

    Last Modified: 11 Apr 2025

    APT before 0.8.15.2 does not properly validate inline GPG signatures, which allows man-in-the-middle attackers to install modified packages via vectors involving lack of an initial clearsigned message.

    Published: 27 Jul 2011
    4.4
    Medium

    CVE-2011-2185

    Last Modified: 11 Apr 2025

    Fabric before 1.1.0 allows local users to overwrite arbitrary files via a symlink attack on (1) a /tmp/fab.*.tar file or (2) certain other files in the top level of /tmp/.

    Published: 27 Jul 2011
    5.8
    Medium

    CVE-2011-2467

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in lsassd in Lsass in the Likewise Security Authority in Likewise Open 5.4 through 6.1, and Likewise Enterprise 6.0, allows local users to execute arbitrary SQL commands via unspecified vectors.

    Published: 27 Jul 2011
    7.2
    High

    CVE-2011-2489

    Last Modified: 11 Apr 2025

    Multiple off-by-one errors in opiesu.c in opiesu in OPIE 2.4.1-test1 and earlier might allow local users to gain privileges via a crafted command line.

    Published: 27 Jul 2011
    6.8
    Medium

    CVE-2011-2587

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the DemuxAudioSipr function in real.c in the RealMedia demuxer in VideoLAN VLC media player 1.1.x before 1.1.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Real Media file.

    Published: 27 Jul 2011
    6.8
    Medium

    CVE-2011-2588

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the AVI_ChunkRead_strf function in libavi.c in the AVI demuxer in VideoLAN VLC media player before 1.1.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted AVI media file.

    Published: 27 Jul 2011
    7.5
    High

    CVE-2011-2687

    Last Modified: 11 Apr 2025

    Drupal 7.x before 7.3 allows remote attackers to bypass intended node_access restrictions via vectors related to a listing that shows nodes but lacks a JOIN clause for the node table.

    Published: 27 Jul 2011
    7.2
    High

    CVE-2011-2490

    Last Modified: 11 Apr 2025

    opielogin.c in opielogin in OPIE 2.4.1-test1 and earlier does not check the return value of the setuid system call, which allows local users to gain privileges by arranging for an account to already be running its maximum number of processes.

    Published: 27 Jul 2011
    6.5
    Medium

    CVE-2011-2745

    Last Modified: 11 Apr 2025

    upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict the file extensions of uploaded files, which allows remote authenticated users to upload a .php file, and consequently execute arbitrary PHP code, via a write_post action to the default URI under admin/.

    Published: 27 Jul 2011
    5.7
    Medium

    CVE-2011-2723

    Last Modified: 11 Apr 2025

    The skb_gro_header_slow function in include/linux/netdevice.h in the Linux kernel before 2.6.39.4, when Generic Receive Offload (GRO) is enabled, resets certain fields in incorrect situations, which allows remote attackers to cause a denial of service (system crash) via crafted network traffic.

    Published: 27 Jul 2011
    6.8
    Medium

    CVE-2011-2522

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10 allow remote attackers to hijack the authentication of administrators for requests that (1) shut down daemons, (2) start daemons, (3) add shares, (4) remove shares, (5) add printers, (6) remove printers, (7) add user accounts, or (8) remove user accounts, as demonstrated by certain start, stop, and restart parameters to the status program.

    Published: 26 Jul 2011
    5.5
    Medium

    CVE-2011-4112

    Last Modified: 11 Apr 2025

    The net subsystem in the Linux kernel before 3.1 does not properly restrict use of the IFF_TX_SKB_SHARING flag, which allows local users to cause a denial of service (panic) by leveraging the CAP_NET_ADMIN capability to access /proc/net/pktgen/pgctrl, and then using the pktgen package in conjunction with a bridge device for a VLAN interface.

    Published: 26 Jul 2011