CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2011-1430

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in the server in Ipswitch IMail 11.03 and earlier does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 16 Mar 2011
    6.8
    Medium

    CVE-2011-1431

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in qmail-smtpd.c in qmail-smtpd in the netqmail-1.06-tls patch for netqmail 1.06 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 16 Mar 2011
    6.8
    Medium

    CVE-2011-1432

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in SCO SCOoffice Server does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 16 Mar 2011
    5.8
    Medium

    CVE-2011-1428

    Last Modified: 11 Apr 2025

    Wee Enhanced Environment for Chat (aka WeeChat) 0.3.4 and earlier does not properly verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL chat server via an arbitrary certificate, related to incorrect use of the GnuTLS API.

    Published: 16 Mar 2011
    4.9
    Medium

    CVE-2011-4611

    Last Modified: 11 Apr 2025

    Integer overflow in the perf_event_interrupt function in arch/powerpc/kernel/perf_event.c in the Linux kernel before 2.6.39 on powerpc platforms allows local users to cause a denial of service (unhandled performance monitor exception) via vectors that trigger certain outcomes of performance events.

    Published: 16 Mar 2011
    4.3
    Medium

    CVE-2010-4757

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in submitnews.php in e107 before 0.7.23 allows remote attackers to inject arbitrary web script or HTML via the submitnews_title parameter, a different vector than CVE-2008-6208. NOTE: some of these details are obtained from third party information. NOTE: this might be the same as CVE-2009-4083.1 or CVE-2011-0457.

    Published: 15 Mar 2011
    5
    Medium

    CVE-2011-0063

    Last Modified: 11 Apr 2025

    The _list_file_get function in lib/Majordomo.pm in Majordomo 2 20110203 and earlier allows remote attackers to conduct directory traversal attacks and read arbitrary files via a ./.../ sequence in the "extra" parameter to the help command, which causes the regular expression to produce .. (dot dot) sequences. NOTE: this vulnerability is due to an incomplete fix for CVE-2011-0049.

    Published: 15 Mar 2011
    4.3
    Medium

    CVE-2011-0457

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in e107 0.7.22 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 15 Mar 2011
    6.8
    Medium

    CVE-2011-1147

    Last Modified: 11 Apr 2025

    Multiple stack-based and heap-based buffer overflows in the (1) decode_open_type and (2) udptl_rx_packet functions in main/udptl.c in Asterisk Open Source 1.4.x before 1.4.39.2, 1.6.1.x before 1.6.1.22, 1.6.2.x before 1.6.2.16.2, and 1.8 before 1.8.2.4; Business Edition C.x.x before C.3.6.3; AsteriskNOW 1.5; and s800i (Asterisk Appliance), when T.38 support is enabled, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted UDPTL packet.

    Published: 15 Mar 2011
    4.3
    Medium

    CVE-2011-1427

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 5.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) Language parameter to Pages/login.aspx, (2) HeaderWarning parameter to Troubleshooting/DiagnosticReport.asp, or (3) User-Agent header to troubleshooting/speedtest.asp.

    Published: 15 Mar 2011
    6.8
    Medium

    CVE-2011-0438

    Last Modified: 11 Apr 2025

    nslcd/pam.c in the nss-pam-ldapd 0.8.0 PAM module returns a success code when a user is not found in LDAP, which allows remote attackers to bypass authentication.

    Published: 15 Mar 2011
    7.6
    High

    CVE-2011-0284

    Last Modified: 11 Apr 2025

    Double free vulnerability in the prepare_error_as function in do_as_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.7 through 1.9, when the PKINIT feature is enabled, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via an e_data field containing typed data.

    Published: 15 Mar 2011
    2.1
    Low

    CVE-2011-1163

    Last Modified: 11 Apr 2025

    The osf_partition function in fs/partitions/osf.c in the Linux kernel before 2.6.38 does not properly handle an invalid number of partitions, which might allow local users to obtain potentially sensitive information from kernel heap memory via vectors related to partition-table parsing.

    Published: 15 Mar 2011
    7.5
    High

    CVE-2011-0432

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in the get_userinfo method in the MySQLAuthHandler class in DAVServer/mysqlauth.py in PyWebDAV before 0.9.4.1 allow remote attackers to execute arbitrary SQL commands via the (1) user or (2) pw argument. NOTE: some of these details are obtained from third party information.

    Published: 14 Mar 2011
    3.5
    Low

    CVE-2011-0700

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in WordPress before 3.0.5 allow remote authenticated users to inject arbitrary web script or HTML via vectors related to (1) the Quick/Bulk Edit title (aka post title or post_title), (2) post_status, (3) comment_status, (4) ping_status, and (5) escaping of tags within the tags meta box.

    Published: 14 Mar 2011
    4.3
    Medium

    CVE-2011-0280

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in HP Power Manager (HPPM) 4.3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the logType parameter to Contents/exportlogs.asp, (2) the Id parameter to Contents/pagehelp.asp, or the (3) SORTORD or (4) SORTCOL parameter to Contents/applicationlogs.asp. NOTE: some of these details are obtained from third party information.

    Published: 14 Mar 2011
    4
    Medium

    CVE-2011-0701

    Last Modified: 11 Apr 2025

    wp-admin/async-upload.php in the media uploader in WordPress before 3.0.5 allows remote authenticated users to read (1) draft posts or (2) private posts via a modified attachment_id parameter.

    Published: 14 Mar 2011
    7.5
    High

    CVE-2011-1153

    Last Modified: 11 Apr 2025

    Multiple format string vulnerabilities in phar_object.c in the phar extension in PHP 5.3.5 and earlier allow context-dependent attackers to obtain sensitive information from process memory, cause a denial of service (memory corruption), or possibly execute arbitrary code via format string specifiers in an argument to a class method, leading to an incorrect zend_throw_exception_ex call.

    Published: 14 Mar 2011
    7.8
    High

    CVE-2011-0609

    Last Modified: 21 Apr 2026

    Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android; Adobe AIR 2.5.1 and earlier; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader and Acrobat 9.x through 9.4.2 and 10.x through 10.0.1 on Windows and Mac OS X, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Flash content, as demonstrated by a .swf file embedded in an Excel spreadsheet, and as exploited in the wild in March 2011.

    Published: 14 Mar 2011
    5.5
    Medium

    CVE-2011-1166

    Last Modified: 11 Apr 2025

    Xen, possibly before 4.0.2, allows local 64-bit PV guests to cause a denial of service (host crash) by specifying user mode execution without user-mode pagetables.

    Published: 14 Mar 2011
    9
    Critical

    CVE-2011-1581

    Last Modified: 11 Apr 2025

    The bond_select_queue function in drivers/net/bonding/bond_main.c in the Linux kernel before 2.6.39, when a network device with a large number of receive queues is installed but the default tx_queues setting is used, does not properly restrict queue indexes, which allows remote attackers to cause a denial of service (BUG and system crash) or possibly have unspecified other impact by sending network traffic.

    Published: 14 Mar 2011
    7.5
    High

    CVE-2011-1148

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the substr_replace function in PHP 5.3.6 and earlier allows context-dependent attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact by using the same variable for multiple arguments.

    Published: 13 Mar 2011
    5
    Medium

    CVE-2011-1473

    Last Modified: 11 Apr 2025

    OpenSSL before 0.9.8l, and 0.9.8m through 1.x, does not properly restrict client-initiated renegotiation within the SSL and TLS protocols, which might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection, a different vulnerability than CVE-2011-5094. NOTE: it can also be argued that it is the responsibility of server deployments, not a security library, to prevent or limit renegotiation when it is inappropriate within a specific environment

    Published: 13 Mar 2011
    4.3
    Medium

    CVE-2011-5094

    Last Modified: 11 Apr 2025

    Mozilla Network Security Services (NSS) 3.x, with certain settings of the SSL_ENABLE_RENEGOTIATION option, does not properly restrict client-initiated renegotiation within the SSL and TLS protocols, which might make it easier for remote attackers to cause a denial of service (CPU consumption) by performing many renegotiations within a single connection, a different vulnerability than CVE-2011-1473. NOTE: it can also be argued that it is the responsibility of server deployments, not a security library, to prevent or limit renegotiation when it is inappropriate within a specific environment

    Published: 13 Mar 2011
    7.5
    High

    CVE-2011-0157

    Last Modified: 11 Apr 2025

    WebKit, as used in Apple iOS before 4.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2011-03-09-1.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-0160

    Last Modified: 11 Apr 2025

    WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle redirects in conjunction with HTTP Basic Authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header.

    Published: 11 Mar 2011
    4.3
    Medium

    CVE-2011-0163

    Last Modified: 11 Apr 2025

    WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle unspecified "cached resources," which allows remote attackers to cause a denial of service (resource unavailability) via a crafted web site that conducts a cache-poisoning attack.

    Published: 11 Mar 2011
    5.8
    Medium

    CVE-2011-0166

    Last Modified: 11 Apr 2025

    The HTML5 drag and drop functionality in WebKit in Apple Safari before 5.0.4 allows user-assisted remote attackers to bypass the Same Origin Policy and obtain sensitive information via vectors related to the dragging of content. NOTE: this might overlap CVE-2011-0778.

    Published: 11 Mar 2011
    4.3
    Medium

    CVE-2011-0167

    Last Modified: 11 Apr 2025

    The windows functionality in WebKit in Apple Safari before 5.0.4 allows remote attackers to bypass the Same Origin Policy, and force the upload of arbitrary local files from a client computer, via a crafted web site.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1418

    Last Modified: 11 Apr 2025

    The stateless address autoconfiguration (aka SLAAC) functionality in the IPv6 networking implementation in Apple iOS before 4.3 and Apple TV before 4.2 places the MAC address into the IPv6 address, which makes it easier for remote IPv6 servers to track users by logging source IPv6 addresses.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-0159

    Last Modified: 11 Apr 2025

    The Safari Settings feature in Safari in Apple iOS 4.x before 4.3 does not properly implement the clearing of cookies during execution of the Safari application, which might make it easier for remote web servers to track users by setting a cookie.

    Published: 11 Mar 2011
    4.3
    Medium

    CVE-2011-0161

    Last Modified: 11 Apr 2025

    WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle the Attr.style accessor, which allows remote attackers to bypass the Same Origin Policy and inject Cascading Style Sheets (CSS) token sequences via a crafted web site.

    Published: 11 Mar 2011
    7.8
    High

    CVE-2011-0162

    Last Modified: 11 Apr 2025

    Wi-Fi in Apple iOS before 4.3 and Apple TV before 4.2 does not properly perform bounds checking for Wi-Fi frames, which allows remote attackers to cause a denial of service (device reset) via unspecified traffic on the local wireless network.

    Published: 11 Mar 2011
    2.6
    Low

    CVE-2011-0169

    Last Modified: 11 Apr 2025

    WebKit in Apple Safari before 5.0.4, when the Web Inspector is used, does not properly handle the window.console._inspectorCommandLineAPI property, which allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted web site.

    Published: 11 Mar 2011
    4.3
    Medium

    CVE-2011-0158

    Last Modified: 11 Apr 2025

    MobileSafari in Apple iOS before 4.3 does not properly implement application launching through URL handlers, which allows remote attackers to cause a denial of service (persistent application crash) via crafted JavaScript code.

    Published: 11 Mar 2011
    10
    Critical

    CVE-2011-1290

    Last Modified: 11 Apr 2025

    Integer overflow in WebKit, as used on the Research In Motion (RIM) BlackBerry Torch 9800 with firmware 6.0.0.246, in Google Chrome before 10.0.648.133, and in Apple Safari before 5.0.5, allows remote attackers to execute arbitrary code via unknown vectors related to CSS "style handling," nodesets, and a length value, as demonstrated by Vincenzo Iozzo, Willem Pinckaers, and Ralf-Philipp Weinmann during a Pwn2Own competition at CanSecWest 2011.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-0456

    Last Modified: 11 Apr 2025

    webscript.pl in Open Ticket Request System (OTRS) 2.3.4 and earlier allows remote attackers to execute arbitrary commands via unspecified vectors, related to a "command injection vulnerability."

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1137

    Last Modified: 11 Apr 2025

    Integer overflow in the mod_sftp (aka SFTP) module in ProFTPD 1.3.3d and earlier allows remote attackers to cause a denial of service (memory consumption leading to OOM kill) via a malformed SSH message.

    Published: 11 Mar 2011
    Unknown

    CVE-2011-1415

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-1290. Reason: This candidate is a duplicate of CVE-2011-1290. Notes: All CVE users should reference CVE-2011-1290 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1416

    Last Modified: 11 Apr 2025

    The Research In Motion (RIM) BlackBerry Torch 9800 with firmware 6.0.0.246 allows attackers to read the contents of memory locations via unknown vectors, as demonstrated by Vincenzo Iozzo, Willem Pinckaers, and Ralf-Philipp Weinmann during a Pwn2Own competition at CanSecWest 2011.

    Published: 11 Mar 2011
    6.8
    Medium

    CVE-2011-1417

    Last Modified: 11 Apr 2025

    Integer overflow in QuickLook, as used in Apple Mac OS X before 10.6.7 and MobileSafari in Apple iOS before 4.2.7 and 4.3.x before 4.3.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a Microsoft Office document with a crafted size field in the OfficeArtMetafileHeader, related to OfficeArtBlip, as demonstrated on the iPhone by Charlie Miller and Dion Blazakis during a Pwn2Own competition at CanSecWest 2011.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2010-3609

    Last Modified: 11 Apr 2025

    The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of service (infinite loop) via a packet with a "next extension offset" that references this extension or a previous extension. NOTE: some of these details are obtained from third party information.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1187

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 allows remote attackers to bypass the Same Origin Policy via unspecified vectors, related to an "error message leak."

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1185

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not prevent (1) navigation and (2) close operations on the top location of a sandboxed frame, which has unspecified impact and remote attack vectors.

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1186

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 on Linux does not properly handle parallel execution of calls to the print method, which might allow remote attackers to cause a denial of service (application crash) via crafted JavaScript code.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1188

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly handle counter nodes, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1189

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 does not properly perform box layout, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale node."

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1190

    Last Modified: 11 Apr 2025

    The Web Workers implementation in Google Chrome before 10.0.648.127 allows remote attackers to bypass the Same Origin Policy via unspecified vectors, related to an "error message leak."

    Published: 11 Mar 2011
    5
    Medium

    CVE-2011-1192

    Last Modified: 11 Apr 2025

    Google Chrome before 10.0.648.127 on Linux does not properly handle Unicode ranges, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

    Published: 11 Mar 2011
    7.5
    High

    CVE-2011-1193

    Last Modified: 11 Apr 2025

    Google V8, as used in Google Chrome before 10.0.648.127, allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

    Published: 11 Mar 2011