Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 6.1

    MEDIUM
    CVE-2011-2714

    A Cross-Site Scripting vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table descriptions, field names, or labels before display.... Read more

    Affected Products : drupal data
    • Published: Jan. 14, 2020
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2011-2706

    A Cross-Site Scripting (XSS) vulnerability exists in the reorder administrator functions in sNews 1.71.... Read more

    Affected Products : snews
    • Published: Jan. 14, 2020
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2011-2670

    Mozilla Firefox before 3.6 is vulnerable to XSS via the rendering of Cascading Style Sheets... Read more

    Affected Products : firefox
    • Published: Jan. 13, 2020
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-2669

    Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.... Read more

    Affected Products : firefox
    • Published: Jan. 21, 2020
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2011-2668

    Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header... Read more

    Affected Products : firefox
    • Published: Jan. 21, 2020
    • Modified: Nov. 21, 2024
  • 9.0

    HIGH
    CVE-2011-2538

    Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to execute arbitrary commands.... Read more

    • Published: Oct. 29, 2019
    • Modified: Nov. 21, 2024
  • 10.0

    HIGH
    CVE-2011-2523

    vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.... Read more

    Affected Products : debian_linux vsftpd
    • Published: Nov. 27, 2019
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2011-2515

    PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and execution of arbitrary code.... Read more

    • Published: Nov. 27, 2019
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2011-2499

    Mambo CMS through 4.6.5 has multiple XSS.... Read more

    Affected Products : mambo_cms
    • Published: Feb. 12, 2020
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2011-2498

    The Linux kernel from v2.3.36 before v2.6.39 allows local unprivileged users to cause a denial of service (memory consumption) by triggering creation of PTE pages.... Read more

    Affected Products : linux_kernel ubuntu_linux
    • Published: Feb. 20, 2020
    • Modified: Nov. 21, 2024
  • 5.9

    MEDIUM
    CVE-2011-2487

    The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.... Read more

    • Published: Mar. 11, 2020
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2011-2480

    Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel to cop... Read more

    Affected Products : freebsd netbsd
    • Published: Nov. 27, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-2353

    Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDocument function.... Read more

    Affected Products : chrome blink
    • Published: Nov. 07, 2019
    • Modified: Nov. 21, 2024
  • 2.4

    LOW
    CVE-2011-2343

    The Bluetooth stack in Android before 2.3.6 allows a physically proximate attacker to obtain contact information via an AT phonebook transfer.... Read more

    Affected Products : android
    • Published: Feb. 12, 2020
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2011-2337

    A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.... Read more

    Affected Products : blink
    • Published: Nov. 07, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-2336

    An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that signal when a hardware animation starts.... Read more

    Affected Products : chrome blink
    • Published: Nov. 07, 2019
    • Modified: Nov. 21, 2024
  • 7.5

    HIGH
    CVE-2011-2335

    A double-free vulnerability exists in WebKit in Google Chrome before Blink M12 in the WebCore::CSSSelector function.... Read more

    Affected Products : chrome blink
    • Published: Nov. 12, 2019
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2011-2334

    Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements with reflections.... Read more

    Affected Products : chrome blink
    • Published: Nov. 12, 2019
    • Modified: Nov. 21, 2024
  • 5.3

    MEDIUM
    CVE-2011-2207

    dirmngr before 2.1.0 improperly handles certain system calls, which allows remote attackers to cause a denial of service (DOS) via a specially-crafted certificate.... Read more

    Affected Products : enterprise_linux debian_linux gnupg
    • Published: Nov. 27, 2019
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2011-2195

    A flaw was found in WebSVN 2.3.2. Without prior authentication, if the 'allowDownload' option is enabled in config.php, an attacker can invoke the dl.php script and pass a well formed 'path' argument to execute arbitrary commands against the underlying op... Read more

    Affected Products : websvn
    • Published: Oct. 26, 2021
    • Modified: Nov. 21, 2024
Showing 20 of 292840 Results