Latest CVE Feed
-
5.5
MEDIUMCVE-2011-1490
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the ... Read more
- EPSS Score: %0.15
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2011-1489
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the... Read more
- EPSS Score: %0.15
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2011-1488
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when $RepeatedMsgReduction was enabled. A local attacker could use this flaw to cause a denial of the rsyslogd daemon service by crashing the service via a... Read more
- EPSS Score: %0.15
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2011-1474
A locally locally exploitable DOS vulnerability was found in pax-linux versions 2.6.32.33-test79.patch, 2.6.38-test3.patch, and 2.6.37.4-test14.patch. A bad bounds check in arch_get_unmapped_area_topdown triggered by programs doing an mmap after a MAP_GRO... Read more
Affected Products : linux_kernel- EPSS Score: %0.14
- Published: Dec. 26, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-1460
WebKit in Google Chrome before Blink M11 contains a bad cast to RenderBlock when anonymous blocks are renderblocks.... Read more
- EPSS Score: %0.28
- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-1459
The WebKit::WebPluginContainerImpl::handleEvent function in Google Chrome before Blink M11 allows an attacker to cause a denial of service (crash) via the htmlpluginelement.cpp plugin.... Read more
- EPSS Score: %0.29
- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
8.2
HIGHCVE-2011-1408
ikiwiki before 3.20110608 allows remote attackers to hijack root's tty and run symlink attacks.... Read more
- EPSS Score: %0.61
- Published: Oct. 29, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2011-1298
An Integer Overflow exists in WebKit in Google Chrome before Blink M11 in the macOS WebCore::GraphicsContext::fillRect function.... Read more
- EPSS Score: %0.29
- Published: Nov. 06, 2019
- Modified: Nov. 21, 2024
-
9.1
CRITICALCVE-2011-1151
Joomla! 1.6.0 is vulnerable to SQL Injection via the filter_order and filer_order_Dir parameters.... Read more
Affected Products : joomla\!- EPSS Score: %0.04
- Published: Feb. 05, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-1150
bbPress through 1.0.2 has XSS in /bb-login.php url via the re parameter.... Read more
Affected Products : bbpress- EPSS Score: %0.23
- Published: Feb. 05, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2011-1145
The SQLDriverConnect() function in unixODBC before 2.2.14p2 have a possible buffer overflow condition when specifying a large value for SAVEFILE parameter in the connection string.... Read more
- EPSS Score: %0.22
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
6.3
MEDIUMCVE-2011-1136
In tesseract 2.03 and 2.04, an attacker can rewrite an arbitrary user file by guessing the PID and creating a link to the user's file.... Read more
- EPSS Score: %0.26
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-1135
Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in plugins/ExtendedFileManager/manager.php and plugins/ImageManager/manager.php.... Read more
Affected Products : serendipity- EPSS Score: %0.86
- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-1134
Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code in the image manager.... Read more
Affected Products : serendipity- EPSS Score: %5.00
- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-1133
Cross-Site Scripting (XSS) in Xinha, as included in the Serendipity package before 1.5.5, allows remote attackers to execute arbitrary code via plugins/ExtendedFileManager/backend.php.... Read more
Affected Products : serendipity- EPSS Score: %0.86
- Published: Nov. 05, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-1086
Cross-site scripting (XSS) vulnerability in admin/system.html in Openfiler 2.3 allows remote attackers to inject arbitrary web script or HTML via the device parameter.... Read more
Affected Products : openfiler- EPSS Score: %0.24
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2011-1085
CSRF vulnerability in Smoothwall Express 3.... Read more
Affected Products : smoothwall_express- EPSS Score: %0.16
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-1084
A cross-site scripting (XSS) vulnerability in Smoothwall Express 3.... Read more
Affected Products : smoothwall_express- EPSS Score: %0.24
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
4.3
MEDIUMCVE-2011-1075
FreeBSD's crontab calculates the MD5 sum of the previous and new cronjob to determine if any changes have been made before copying the new version in. In particular, it uses the MD5File() function, which takes a pathname as an argument, and is called with... Read more
Affected Products : freebsd- EPSS Score: %0.20
- Published: Oct. 19, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2011-1070
v86d before 0.1.10 do not verify if received netlink messages are sent by the kernel. This could allow unprivileged users to manipulate the video mode and potentially other consequences.... Read more
- EPSS Score: %0.13
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024