8.8
    High

    CVE-2011-4334

    Last Modified: 25 Nov 2011

    edit.php in LabWiki 1.1 and earlier does not properly verify uploaded user files, which allows remote authenticated users to upload arbitrary PHP files via a PHP file with a .gif extension in the userfile parameter.

    Source:muuratsalo
    Published:23 Oct 2017
    6.1
    Medium

    CVE-2011-4333

    Last Modified: 25 Nov 2011

    Multiple cross-site scripting (XSS) vulnerabilities in LabWiki 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) from parameter to index.php or the (2) page_no parameter to recentchanges.php.

    Source:muuratsalo
    Published:23 Oct 2017
    4.3
    Medium

    CVE-2011-4317

    Last Modified: 31 Jan 2017

    The mod_proxy module in the Apache HTTP Server 1.3.x through 1.3.42, 2.0.x through 2.0.64, and 2.2.x through 2.2.21, when the Revision 1179239 patch is in place, does not properly interact with use of (1) RewriteRule and (2) ProxyPassMatch pattern matches for configuration of a reverse proxy, which allows remote attackers to send requests to intranet servers via a malformed URI containing an @ (at sign) character and a : (colon) character in invalid positions. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-3368.

    Source:Prutha Parikh
    Published:23 Nov 2011
    4.3
    Medium

    CVE-2011-4280

    Last Modified: 19 Nov 2014

    Cross-site scripting (XSS) vulnerability in the Spike PHPCoverage (aka spikephpcoverage) library, as used in Moodle 2.0.x before 2.0.2 and other products, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Source:AutoSec Tools
    Published:16 Jul 2012
    4.3
    Medium

    CVE-2011-4275

    Last Modified: 26 Oct 2013

    Multiple cross-site scripting (XSS) vulnerabilities in iTop (aka IT Operations Portal) 1.1.181 and 1.2.0-RC-282 allow remote attackers to inject arbitrary web script or HTML via (1) a crafted company name, (2) a crafted database server name, (3) a crafted CSV file, (4) a crafted copy-and-paste action, (5) the auth_user parameter in a suggest_pwd action to UI.php, (6) the c[menu] parameter to UniversalSearch.php, (7) the description parameter in a SearchFormToAdd_document_list action to UI.php, (8) the category parameter in an errors action to audit.php, or (9) the suggest_pwd parameter to UI.php.

    Source:Metasploit
    Published:26 Nov 2011
    4.3
    Medium

    CVE-2011-4273

    Last Modified: 1 Mar 2015

    Multiple cross-site scripting (XSS) vulnerabilities in GoAhead Webserver 2.18 allow remote attackers to inject arbitrary web script or HTML via (1) the group parameter to goform/AddGroup, related to addgroup.asp; (2) the url parameter to goform/AddAccessLimit, related to addlimit.asp; or the (3) user (aka User ID) or (4) group parameter to goform/AddUser, related to adduser.asp.

    Source:Silent Dream
    Published:3 Nov 2011
    9.3
    Critical

    CVE-2011-4222

    Last Modified: 25 Jun 2012

    Unspecified vulnerability in Investintech.com Able2Extract and Able2Extract Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted document.

    Source:Carlos Mario Penagos Hollmann
    Published:1 Nov 2011
    9.3
    Critical

    CVE-2011-4221

    Last Modified: 25 Jun 2012

    Unspecified vulnerability in Investintech.com Able2Doc and Able2Doc Professional allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted document.

    Source:Carlos Mario Penagos Hollmann
    Published:1 Nov 2011
    9.3
    Critical

    CVE-2011-4220

    Last Modified: 25 Jun 2012

    Investintech.com SlimPDF Reader does not properly restrict the arguments to unspecified function calls, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.

    Source:Carlos Mario Penagos Hollmann
    Published:1 Nov 2011
    7.5
    High

    CVE-2011-4191

    Last Modified: 10 Jan 2012

    Stack-based buffer overflow in the xdrDecodeString function in XNFS.NLM in Novell NetWare 6.5 SP8 allows remote attackers to execute arbitrary code or cause a denial of service (abend or NFS outage) via long packets.

    Source:Francis Provencher
    Published:30 Nov 2011
    7.5
    High

    CVE-2011-4189

    Last Modified: 1 Mar 2012

    The client in Novell GroupWise 8.0x through 8.02HP3 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via a long e-mail address in an Address Book (aka .NAB) file.

    Source:Francis Provencher
    Published:2 Mar 2012
    7.5
    High

    CVE-2011-4166

    Last Modified: 22 Jul 2013

    Directory traversal vulnerability in the MPAUploader.Uploader.1.UploadFiles method in HP Managed Printing Administration before 2.6.4 allows remote attackers to create arbitrary files via crafted form data.

    Source:Metasploit
    Published:27 Dec 2011
    7.5
    High

    CVE-2011-4162

    Last Modified: 16 Mar 2015

    The (1) AddUser, (2) AddUserEx, (3) RemoveUser, (4) RemoveUserByGuide, (5) RemoveUserEx, and (6) RemoveUserRegardless methods in HP Protect Tools Device Access Manager (PTDAM) before 6.1.0.1 allow remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a long SidString argument.

    Source:High-Tech Bridge SA
    Published:5 Dec 2011
    5
    Medium

    CVE-2011-4153

    Last Modified: 14 Jan 2012

    PHP 5.3.8 does not always check the return value of the zend_strndup function, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted input to an application that performs strndup operations on untrusted string data, as demonstrated by the define function in zend_builtin_functions.c, and unspecified functions in ext/soap/php_sdl.c, ext/standard/syslog.c, ext/standard/browscap.c, ext/oci8/oci8.c, ext/com_dotnet/com_typeinfo.c, and main/php_open_temporary_file.c.

    Source:Maksymilian Arciemowicz
    Published:10 Jan 2012
    6.9
    Medium

    CVE-2011-4122

    Last Modified: 6 Mar 2015

    Directory traversal vulnerability in openpam_configure.c in OpenPAM before r478 on FreeBSD 8.1 allows local users to load arbitrary DSOs and gain privileges via a .. (dot dot) in the service_name argument to the pam_start function, as demonstrated by a .. in the -c option to kcheckpass.

    Source:IKCE
    Published:17 Nov 2011
    6.5
    Medium

    CVE-2011-4107

    Last Modified: 2 Nov 2017

    The simplexml_load_string function in the XML import plug-in (libraries/import/xml.php) in phpMyAdmin 3.4.x before 3.4.7.1 and 3.3.x before 3.3.10.5 allows remote authenticated users to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE) injection attack.

    Source:Marco Batista
    Published:17 Nov 2011
    6.8
    Medium

    CVE-2011-4106

    Last Modified: 8 Nov 2016

    TimThumb (timthumb.php) before 2.0 does not validate the entire source with the domain white list, which allows remote attackers to upload and execute arbitrary code via a URL containing a white-listed domain in the src parameter, then accessing it via a direct request to the file in the cache directory, as exploited in the wild in August 2011.

    Source:Ben Schmidt
    Published:26 Oct 2013
    6.1
    Medium

    CVE-2011-4095

    Last Modified: 17 Nov 2011

    Jara 1.6 has an XSS vulnerability

    Source:Or4nG.M4N
    Published:21 Jan 2020
    9.8
    Critical

    CVE-2011-4094

    Last Modified: 23 Oct 2011

    Jara 1.6 has a SQL injection vulnerability.

    Source:muuratsalo
    Published:21 Jan 2020
    6.1
    Medium

    CVE-2011-4090

    Last Modified: 31 Oct 2016

    Serendipity before 1.6 has an XSS issue in the karma plugin which may allow privilege escalation.

    Source:Stefan Schurtz
    Published:26 Nov 2019
    4.6
    Medium

    CVE-2011-4089

    Last Modified: 27 Nov 2011

    The bzexe command in bzip2 1.0.5 and earlier generates compressed executables that do not properly handle temporary files during extraction, which allows local users to execute arbitrary code by precreating a temporary directory.

    Source:vladz
    Published:16 Apr 2014
    5
    Medium

    CVE-2011-4084

    Last Modified: 9 Nov 2016

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4858. Reason: This candidate is a duplicate of CVE-2011-4858. Notes: All CVE users should reference CVE-2011-4858 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Source:rgod
    Published:28 Dec 2011
    7.5
    High

    CVE-2011-4075

    Last Modified: 6 Jan 2017

    The masort function in lib/functions.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to execute arbitrary PHP code via the orderby parameter (aka sortby variable) in a query_engine action to cmd.php, as exploited in the wild in October 2011.

    Source:EgiX
    Published:2 Nov 2011
    4.3
    Medium

    CVE-2011-4074

    Last Modified: 6 Jan 2017

    Cross-site scripting (XSS) vulnerability in cmd.php in phpLDAPadmin 1.2.x before 1.2.2 allows remote attackers to inject arbitrary web script or HTML via an _debug command.

    Source:EgiX
    Published:2 Nov 2011
    7.5
    High

    CVE-2011-4066

    Last Modified: 17 Oct 2017

    SQL injection vulnerability in bbs/tb.php in Gnuboard 4.33.02 and earlier allows remote attackers to execute arbitrary SQL commands via the PATH_INFO.

    Source:flyh4t
    Published:4 Nov 2011
    7.2
    High

    CVE-2011-4062

    Last Modified: 4 Oct 2011

    Buffer overflow in the kernel in FreeBSD 7.3 through 9.0-RC1 allows local users to cause a denial of service (panic) or possibly gain privileges via a bind system call with a long pathname for a UNIX socket.

    Source:Shaun Colley
    Published:18 Oct 2011
    10
    Critical

    CVE-2011-4051

    Last Modified: 10 Oct 2012

    CEServer.exe in the CEServer component in the Remote Agent module in InduSoft Web Studio 6.1 and 7.0 does not require authentication, which allows remote attackers to execute arbitrary code via vectors related to creation of a file, loading a DLL, and process control.

    Source:Metasploit
    Published:5 Dec 2011
    4.3
    Medium

    CVE-2011-4045

    Last Modified: 27 Sept 2011

    Buffer overflow in an unspecified ActiveX control in aipgctl.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to cause a denial of service via a crafted HTML document.

    Source:Luigi Auriemma
    Published:3 Apr 2012
    5.8
    Medium

    CVE-2011-4044

    Last Modified: 27 Sept 2011

    An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to modify files via calls to unknown methods.

    Source:Luigi Auriemma
    Published:3 Apr 2012
    9.3
    Critical

    CVE-2011-4043

    Last Modified: 27 Sept 2011

    Integer overflow in an unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code via a large value for an integer parameter, leading to a buffer overflow.

    Source:Luigi Auriemma
    Published:3 Apr 2012
    9.3
    Critical

    CVE-2011-4042

    Last Modified: 27 Sept 2011

    An unspecified ActiveX control in SVUIGrd.ocx in ARC Informatique PcVue 6.0 through 10.0, FrontVue, and PlantVue allows remote attackers to execute arbitrary code by using a crafted HTML document to obtain control of a function pointer.

    Source:Luigi Auriemma
    Published:3 Apr 2012
    10
    Critical

    CVE-2011-4041

    Last Modified: 18 Dec 2016

    webvrpcs.exe in Advantech/BroadWin WebAccess allows remote attackers to execute arbitrary code or obtain a security-code value via a long string in an RPC request to TCP port 4592.

    Source:Ruben Santamarta
    Published:6 Feb 2012
    10
    Critical

    CVE-2011-4040

    Last Modified: 3 Dec 2011

    Buffer overflow in MiniSmtp 3.0.11818 in NJStar Communicator allows remote attackers to execute arbitrary code via a crafted packet.

    Source:Zune
    Published:21 Nov 2011
    1.9
    Low

    CVE-2011-4029

    Last Modified: 25 Jan 2018

    The LockServer function in os/utils.c in X.Org xserver before 1.11.2 allows local users to change the permissions of arbitrary files to 444, read those files, and possibly cause a denial of service (removed execution permission) via a symlink attack on a temporary lock file.

    Source:vladz
    Published:18 Oct 2011
    7.5
    High

    CVE-2011-4026

    Last Modified: 8 Oct 2011

    SQL injection vulnerability in thanks.php in NexusPHP 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:flyh4t
    Published:21 Oct 2011
    4.3
    Medium

    CVE-2011-4024

    Last Modified: 20 Oct 2011

    Cross-site scripting (XSS) vulnerability in ocsinventory in OCS Inventory NG 2.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Source:Nicolas DEROUET
    Published:21 Oct 2011
    7.5
    High

    CVE-2011-3981

    Last Modified: 19 Sept 2011

    PHP remote file inclusion vulnerability in actions.php in the Allwebmenus plugin 1.1.3 for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the abspath parameter.

    Source:Ben Schmidt
    Published:4 Oct 2011
    4.3
    Medium

    CVE-2011-3979

    Last Modified: 19 Feb 2015

    Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module in Zikula Application Framework 1.3.0 build 3168, 1.2.7, and probably other versions allows remote attackers to inject arbitrary web script or HTML via the themename parameter in the setasdefault action to index.php.

    Source:High-Tech Bridge SA
    Published:4 Oct 2011
    6.8
    Medium

    CVE-2011-3976

    Last Modified: 10 Oct 2011

    Stack-based buffer overflow in AmmSoft ScriptFTP 3.3 allows remote FTP servers to execute arbitrary code via a long filename in a response to a LIST command, as demonstrated using (1) GETLIST or (2) GETFILE in a ScriptFTP script.

    Source:Metasploit
    Published:4 Oct 2011
    9.8
    Critical

    CVE-2011-3923

    Last Modified: 22 Mar 2013

    Apache Struts before 2.3.1.2 allows remote attackers to bypass security protections in the ParameterInterceptor class and execute arbitrary commands.

    Source:Metasploit
    Published:22 Jan 2012
    7.8
    High

    CVE-2011-3918

    Last Modified: 14 Oct 2013

    The Zygote process in Android 4.0.3 and earlier accepts fork requests from processes with arbitrary UIDs, which allows remote attackers to cause a denial of service (reboot loop) via a crafted application.

    Source:Luca Verderame
    Published:7 Oct 2012
    2.6
    Low

    CVE-2011-3872

    Last Modified: 11 Apr 2025

    Puppet 2.6.x before 2.6.12 and 2.7.x before 2.7.6, and Puppet Enterprise (PE) Users 1.0, 1.1, and 1.2 before 1.2.4, when signing an agent certificate, adds the Puppet master's certdnsnames values to the X.509 Subject Alternative Name field of the certificate, which allows remote attackers to spoof a Puppet master via a man-in-the-middle (MITM) attack against an agent that uses an alternate DNS name for the master, aka "AltNames Vulnerability."

    Published:24 Oct 2011
    4.3
    Medium

    CVE-2011-3865

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Black-LetterHead theme before 1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3863

    Last Modified: 27 Feb 2015

    Cross-site scripting (XSS) vulnerability in the RedLine theme before 1.66 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3862

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Morning Coffee theme before 3.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3861

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Web Minimalist 200901 theme before 1.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3860

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Cover WP theme before 1.6.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:jabdah
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3859

    Last Modified: 27 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Trending theme before 0.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the cpage parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3858

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Pixiv Custom theme before 2.1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3856

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Elegant Grunge theme before 1.0.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011