4.3
    Medium

    CVE-2011-3855

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the F8 Lite theme before 4.2.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3852

    Last Modified: 26 Feb 2015

    Cross-site scripting (XSS) vulnerability in the EvoLve theme before 1.2.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    4.3
    Medium

    CVE-2011-3850

    Last Modified: 25 Feb 2015

    Cross-site scripting (XSS) vulnerability in the Atahualpa theme before 3.6.8 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter.

    Source:SiteWatch
    Published:28 Sept 2011
    6
    Medium

    CVE-2011-3833

    Last Modified: 13 Nov 2011

    Unrestricted file upload vulnerability in ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in an unspecified directory.

    Source:Metasploit
    Published:29 Jan 2012
    4
    Medium

    CVE-2011-3829

    Last Modified: 13 Nov 2011

    ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.

    Source:Metasploit
    Published:29 Jan 2012
    5
    Medium

    CVE-2011-3713

    Last Modified: 27 Dec 2014

    cFTP r80 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by templates/session_check.php and certain other files.

    Source:TaurusOmar
    Published:23 Sept 2011
    9.3
    Critical

    CVE-2011-3659

    Last Modified: 13 May 2012

    Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 might allow remote attackers to execute arbitrary code via vectors related to incorrect AttributeChildRemoved notifications that affect access to removed nsDOMAttribute child nodes.

    Source:Metasploit
    Published:31 Jan 2012
    7.5
    High

    CVE-2011-3658

    Last Modified: 9 May 2012

    The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via vectors involving removal of SVG elements.

    Source:Metasploit
    Published:20 Dec 2011
    7.5
    High

    CVE-2011-3645

    Last Modified: 27 Sept 2011

    Newgen OmniDocs allows remote attackers to bypass intended access restrictions via (1) a modified FolderRights parameter to doccab/doclist.jsp, which leads to arbitrary permission changes; or (2) a modified UserIndex parameter to doccab/userprofile/editprofile.jsp, which selects the settings page of an arbitrary user.

    Source:Sohil Garg
    Published:27 Sept 2011
    9.6
    Critical

    CVE-2011-3642

    Last Modified: 29 Jan 2015

    Cross-site scripting (XSS) vulnerability in Flowplayer Flash 3.2.7 through 3.2.16, as used in the News system (news) extension for TYPO3 and Mahara, allows remote attackers to inject arbitrary web script or HTML via the plugin configuration directive in a reference to an external domain plugin.

    Source:Szymon Gruszecki
    Published:8 Feb 2020
    4.3
    Medium

    CVE-2011-3639

    Last Modified: 31 Jan 2017

    The mod_proxy module in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x before 2.2.18, when the Revision 1179239 patch is in place, does not properly interact with use of (1) RewriteRule and (2) ProxyPassMatch pattern matches for configuration of a reverse proxy, which allows remote attackers to send requests to intranet servers by using the HTTP/0.9 protocol with a malformed URI containing an initial @ (at sign) character. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-3368.

    Source:Tomas Hoger
    Published:26 Oct 2011
    Low

    CVE-2011-3633

    Last Modified: 4 Oct 2011

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4062. Reason: This candidate is a duplicate of CVE-2011-4062. Notes: All CVE users should reference CVE-2011-4062 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Shaun Colley
    Published:12 Dec 2011
    9.3
    Critical

    CVE-2011-3625

    Last Modified: 30 May 2012

    Stack-based buffer overflow in the sub_read_line_sami function in subreader.c in MPlayer, as used in SMPlayer 0.6.9, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in a SAMI subtitle file.

    Source:Metasploit
    Published:11 Jun 2014
    4.4
    Medium

    CVE-2011-3607

    Last Modified: 29 Mar 2017

    Integer overflow in the ap_pregsub function in server/util.c in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x through 2.2.21, when the mod_setenvif module is enabled, allows local users to gain privileges via a .htaccess file with a crafted SetEnvIf directive, in conjunction with a crafted HTTP request header, leading to a heap-based buffer overflow.

    Source:halfdog
    Published:2 Nov 2011
    7.5
    High

    CVE-2011-3597

    Last Modified: 27 Feb 2015

    Eval injection vulnerability in the Digest module before 1.17 for Perl allows context-dependent attackers to execute arbitrary commands via the new constructor.

    Source:anonymous
    Published:2 Oct 2011
    7.5
    High

    CVE-2011-3596

    Last Modified: 27 Feb 2015

    Polipo before 1.0.4.1 suffers from a DoD vulnerability via specially-crafted HTTP POST / PUT request.

    Source:Usman Saeed
    Published:25 Nov 2019
    9.3
    Critical

    CVE-2011-3587

    Last Modified: 22 Dec 2011

    Unspecified vulnerability in Zope 2.12.x and 2.13.x, as used in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2, allows remote attackers to execute arbitrary commands via vectors related to the p_ class in OFS/misc_.py and the use of Python modules.

    Source:Nick Miles
    Published:28 Sept 2011
    6.4
    Medium

    CVE-2011-3579

    Last Modified: 10 Oct 2016

    server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

    Source:David Kirkpatrick
    Published:30 Sept 2011
    9
    Critical

    CVE-2011-3575

    Last Modified: 22 Feb 2015

    Stack-based buffer overflow in the NSFComputeEvaluateExt function in Nnotes.dll in IBM Lotus Domino 8.5.2 allows remote authenticated users to execute arbitrary code via a long tHPRAgentName parameter in an fmHttpPostRequest OpenForm action to WebAdmin.nsf.

    Source:rmallof
    Published:17 Sept 2011
    7.5
    High

    CVE-2011-3556

    Last Modified: 5 Jun 2017

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, 1.4.2_33 and earlier, and JRockit R28.1.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability, related to RMI, a different vulnerability than CVE-2011-3557.

    Source:Metasploit
    Published:18 Oct 2011
    9.8
    Critical

    CVE-2011-3544

    Last Modified: 30 Nov 2011

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7 and 6 Update 27 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Scripting.

    Source:Metasploit
    Published:18 Oct 2011
    5
    Medium

    CVE-2011-3502

    Last Modified: 14 Sept 2011

    The web server in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to obtain the source code of executable files via a request with a trailing (1) space or (2) %2e (encoded dot).

    Source:Luigi Auriemma
    Published:16 Sept 2011
    5
    Medium

    CVE-2011-3501

    Last Modified: 14 Sept 2011

    Integer overflow in Cogent DataHub 7.1.1.63 and earlier allows remote attackers to cause a denial of service (crash) via a negative or large Content-Length value.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3499

    Last Modified: 14 Sept 2011

    Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code via an EIDP packet with a large size field, which writes a zero byte to an arbitrary memory location.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3498

    Last Modified: 14 Sept 2011

    Heap-based buffer overflow in Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long request.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3497

    Last Modified: 14 Sept 2011

    service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary DLL functions via the XF function, possibly related to an insecure exposed method.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3496

    Last Modified: 14 Sept 2011

    service.exe in Measuresoft ScadaPro 4.0.0 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) BF, (2) OF, or (3) EF command.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3495

    Last Modified: 14 Sept 2011

    Multiple directory traversal vulnerabilities in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to read, modify, or delete arbitrary files via the (1) RF, (2) wF, (3) UF, or (4) NF command.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3494

    Last Modified: 14 Sept 2011

    WinSig.exe in eSignal 10.6.2425 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) a long StyleTemplate element in a QUO, SUM or POR file, which triggers a stack-based buffer overflow, or (2) a long Font->FaceName field (aka FaceName element), which triggers a heap-based buffer overflow. NOTE: some of these details are obtained from third party information.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3493

    Last Modified: 14 Sept 2011

    Multiple stack-based buffer overflows in the DH_OneSecondTick function in Cogent DataHub 7.1.1.63 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) domain, (2) report_domain, (3) register_datahub, or (4) slave commands.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3492

    Last Modified: 14 Sept 2011

    Stack-based buffer overflow in Azeotech DAQFactory 5.85 build 1853 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a crafted NETB packet to UDP port 20034.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3491

    Last Modified: 14 Sept 2011

    Heap-based buffer overflow in Progea Movicon / PowerHMI 11.2.1085 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a negative Content-Length field.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3490

    Last Modified: 14 Sept 2011

    Multiple stack-based buffer overflows in service.exe in Measuresoft ScadaPro 4.0.0 and earlier allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long command to port 11234, as demonstrated with the TF command.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    5
    Medium

    CVE-2011-3489

    Last Modified: 14 Sept 2011

    RnaUtility.dll in RsvcHost.exe 2.30.0.23 in Rockwell RSLogix 19 and earlier allows remote attackers to cause a denial of service (crash) via a crafted rna packet with a long string to TCP port 4446 that triggers (1) "a memset zero overflow" or (2) an out-of-bounds read, related to improper handling of a 32-bit size field.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    10
    Critical

    CVE-2011-3488

    Last Modified: 14 Sept 2011

    Use-after-free vulnerability in Equis MetaStock 11 and earlier allows remote attackers to execute arbitrary code via a malformed (1) mwc chart, (2) mws chart, (3) mwt template, or (4) mwl layout.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    5
    Medium

    CVE-2011-3487

    Last Modified: 13 Sept 2017

    Directory traversal vulnerability in CarelDataServer.exe in Carel PlantVisor 2.4.4 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an HTTP GET request.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    5
    Medium

    CVE-2011-3486

    Last Modified: 5 Nov 2011

    Beckhoff TwinCAT 2.11.0.2004 and earlier allows remote attackers to cause a denial of service via a crafted request to UDP port 48899, which triggers an out-of-bounds read.

    Source:Luigi Auriemma
    Published:16 Sept 2011
    4.3
    Medium

    CVE-2011-3483

    Last Modified: 20 Feb 2015

    Wireshark 1.6.x before 1.6.2 allows remote attackers to cause a denial of service (application crash) via a malformed capture file that leads to an invalid root tvbuff, related to a "buffer exception handling vulnerability."

    Source:Wireshark
    Published:7 Sept 2011
    6.8
    Medium

    CVE-2011-3479

    Last Modified: 2 May 2012

    Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), uses world-writable permissions for product-installation files, which allows local users to gain privileges by modifying a file.

    Source:Edward Torkington
    Published:25 Jan 2012
    10
    Critical

    CVE-2011-3478

    Last Modified: 10 Oct 2016

    The host-services component in Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), does not properly filter login and authentication data, which allows remote attackers to execute arbitrary code via a crafted session on TCP port 5631.

    Source:S2 Crew
    Published:25 Jan 2012
    9.3
    Critical

    CVE-2011-3400

    Last Modified: 6 Jun 2012

    Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 do not properly handle OLE objects in memory, which allows remote attackers to execute arbitrary code via a crafted object in a file, aka "OLE Property Vulnerability."

    Source:Metasploit
    Published:14 Dec 2011
    7.5
    High

    CVE-2011-3394

    Last Modified: 9 Sept 2011

    SQL injection vulnerability in findagent.php in MYRE Real Estate Software allows remote attackers to execute arbitrary SQL commands via the page parameter.

    Source:SecPod Research
    Published:15 Sept 2011
    4.3
    Medium

    CVE-2011-3393

    Last Modified: 9 Sept 2011

    Multiple cross-site scripting (XSS) vulnerabilities in findagent.php in MYRE Real Estate Software allow remote attackers to inject arbitrary web script or HTML via the (1) country1, (2) state1, or (3) city1 parameter.

    Source:SecPod Research
    Published:15 Sept 2011
    4.3
    Medium

    CVE-2011-3390

    Last Modified: 16 Feb 2015

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in IBM OpenAdmin Tool (OAT) before 2.72 for Informix allow remote attackers to inject arbitrary web script or HTML via the (1) informixserver, (2) host, or (3) port parameter in a login action.

    Source:Sumit Kumar Soni
    Published:6 Sept 2011
    4.3
    Medium

    CVE-2011-3389

    Last Modified: 11 Apr 2025

    The SSL protocol, as used in certain configurations in Microsoft Windows and Microsoft Internet Explorer, Mozilla Firefox, Google Chrome, Opera, and other products, encrypts data by using CBC mode with chained initialization vectors, which allows man-in-the-middle attackers to obtain plaintext HTTP headers via a blockwise chosen-boundary attack (BCBA) on an HTTPS session, in conjunction with JavaScript code that uses (1) the HTML5 WebSocket API, (2) the Java URLConnection API, or (3) the Silverlight WebClient API, aka a "BEAST" attack.

    Published:6 Sept 2011
    5
    Medium

    CVE-2011-3368

    Last Modified: 31 Jan 2017

    The mod_proxy module in the Apache HTTP Server 1.3.x through 1.3.42, 2.0.x through 2.0.64, and 2.2.x through 2.2.21 does not properly interact with use of (1) RewriteRule and (2) ProxyPassMatch pattern matches for configuration of a reverse proxy, which allows remote attackers to send requests to intranet servers via a malformed URI containing an initial @ (at sign) character.

    Source:Rodrigo Marcos
    Published:5 Oct 2011
    9.3
    Critical

    CVE-2011-3360

    Last Modified: 19 Nov 2011

    Untrusted search path vulnerability in Wireshark 1.4.x before 1.4.9 and 1.6.x before 1.6.2 allows local users to gain privileges via a Trojan horse Lua script in an unspecified directory.

    Source:Metasploit
    Published:28 Jul 2011
    7.5
    High

    CVE-2011-3340

    Last Modified: 27 Feb 2015

    SQL injection vulnerability in ATCOM Netvolution 2.5.8 ASP allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header.

    Source:Patroklos Argyroudis
    Published:21 Oct 2011
    7.5
    High

    CVE-2011-3336

    Last Modified: 7 Oct 2017

    regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.

    Source:Maksymilian Arciemowicz
    Published:12 Feb 2020
    10
    Critical

    CVE-2011-3322

    Last Modified: 13 Sept 2011

    Core Server HMI Service (Coreservice.exe) in Scadatec Limited Procyon SCADA 1.06, and other versions before 1.14, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long password to the Telnet (TCP/23) port, which triggers an out-of-bounds read or write, leading to a stack-based buffer overflow.

    Source:Metasploit
    Published:15 Sept 2011