Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 9.8

    CRITICAL
    CVE-2011-1933

    SQL injection vulnerability in Jifty::DBI before 0.68.... Read more

    Affected Products : \
    • EPSS Score: %0.54
    • Published: Nov. 26, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-1930

    In klibc 1.5.20 and 1.5.21, the DHCP options written by ipconfig to /tmp/net-$DEVICE.conf are not properly escaped. This may allow a remote attacker to send a specially crafted DHCP reply which could execute arbitrary code with the privileges of any proce... Read more

    Affected Products : debian_linux klibc
    • EPSS Score: %28.99
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2011-1830

    Ekiga versions before 3.3.0 attempted to load a module from /tmp/ekiga_test.so.... Read more

    Affected Products : ekiga
    • EPSS Score: %0.20
    • Published: Apr. 22, 2019
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2011-1805

    Bad cast in CSS in Google Chrome prior to 11.0.0.0 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.... Read more

    Affected Products : chrome
    • EPSS Score: %0.35
    • Published: Jun. 03, 2020
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-1803

    An issue exists in third_party/WebKit/Source/WebCore/svg/animation/SVGSMILElement.h in WebKit in Google Chrome before Blink M11 and M12 when trying to access a removed smil element.... Read more

    Affected Products : chrome blink
    • EPSS Score: %0.17
    • Published: Nov. 12, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-1802

    WebKit in Google Chrome before Blink M11 and M12 does not properly handle counter nodes, which allows remote attackers to cause a denial of service (memory corruption).... Read more

    Affected Products : chrome blink
    • EPSS Score: %0.49
    • Published: Nov. 12, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-1762

    A flaw exists in Wordpress related to the 'wp-admin/press-this.php 'script improperly checking user permissions when publishing posts. This may allow a user with 'Contributor-level' privileges to post as if they had 'publish_posts' permission.... Read more

    Affected Products : wordpress
    • EPSS Score: %0.29
    • Published: Apr. 18, 2022
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2011-1597

    OpenVAS Manager v2.0.3 allows plugin remote code execution.... Read more

    Affected Products : openvas_manager
    • EPSS Score: %1.86
    • Published: Feb. 06, 2020
    • Modified: Nov. 21, 2024
  • 7.8

    HIGH
    CVE-2011-1588

    Thunar before 1.3.1 could crash when copy and pasting a file name with % format characters due to a format string error.... Read more

    Affected Products : debian_linux opensuse thunar
    • EPSS Score: %0.32
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2011-1517

    SAP NetWeaver 7.0 allows Remote Code Execution and Denial of Service caused by an error in the DiagTraceHex() function. By sending a specially-crafted packet, an attacker could exploit this vulnerability to cause the application to crash.... Read more

    Affected Products : netweaver
    • EPSS Score: %2.37
    • Published: Feb. 05, 2020
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2011-1497

    A cross-site scripting vulnerability flaw was found in the auto_link function in Rails before version 3.0.6.... Read more

    Affected Products : rails actionpack
    • EPSS Score: %0.33
    • Published: Oct. 19, 2021
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2011-1490

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the ... Read more

    Affected Products : debian_linux rsyslog opensuse
    • EPSS Score: %0.15
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2011-1489

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the... Read more

    Affected Products : debian_linux rsyslog opensuse
    • EPSS Score: %0.15
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2011-1488

    A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when $RepeatedMsgReduction was enabled. A local attacker could use this flaw to cause a denial of the rsyslogd daemon service by crashing the service via a... Read more

    Affected Products : debian_linux rsyslog opensuse
    • EPSS Score: %0.15
    • Published: Nov. 14, 2019
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2011-1474

    A locally locally exploitable DOS vulnerability was found in pax-linux versions 2.6.32.33-test79.patch, 2.6.38-test3.patch, and 2.6.37.4-test14.patch. A bad bounds check in arch_get_unmapped_area_topdown triggered by programs doing an mmap after a MAP_GRO... Read more

    Affected Products : linux_kernel
    • EPSS Score: %0.14
    • Published: Dec. 26, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2011-1460

    WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.... Read more

    Affected Products : chrome blink
    • EPSS Score: %0.28
    • Published: Nov. 05, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-1459

    The WebKit::WebPluginContainerImpl::handleEvent function in Google Chrome before Blink M11 allows an attacker to cause a denial of service (crash) via the htmlpluginelement.cpp plugin.... Read more

    Affected Products : chrome blink
    • EPSS Score: %0.29
    • Published: Nov. 05, 2019
    • Modified: Nov. 21, 2024
  • 8.2

    HIGH
    CVE-2011-1408

    ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.... Read more

    Affected Products : debian_linux ikiwiki
    • EPSS Score: %0.61
    • Published: Oct. 29, 2019
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2011-1298

    An Integer Overflow exists in WebKit in Google Chrome before Blink M11 in the macOS WebCore::GraphicsContext::fillRect function.... Read more

    Affected Products : chrome macos blink
    • EPSS Score: %0.29
    • Published: Nov. 06, 2019
    • Modified: Nov. 21, 2024
  • 9.1

    CRITICAL
    CVE-2011-1151

    Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters.... Read more

    Affected Products : joomla\!
    • EPSS Score: %0.04
    • Published: Feb. 05, 2020
    • Modified: Nov. 21, 2024
Showing 20 of 291520 Results