Latest CVE Feed
-
6.1
MEDIUMCVE-2011-2706
A Cross-Site Scripting (XSS) vulnerability exists in the reorder administrator functions in sNews 1.71.... Read more
Affected Products : snews- Published: Jan. 14, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2011-2670
Mozilla Firefox before 3.6 is vulnerable to XSS via the rendering of Cascading Style Sheets... Read more
Affected Products : firefox- Published: Jan. 13, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-2669
Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.... Read more
Affected Products : firefox- Published: Jan. 21, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2011-2668
Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header... Read more
Affected Products : firefox- Published: Jan. 21, 2020
- Modified: Nov. 21, 2024
-
9.0
HIGHCVE-2011-2538
Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to execute arbitrary commands.... Read more
Affected Products : telepresence_video_communication_server- Published: Oct. 29, 2019
- Modified: Nov. 21, 2024
-
10.0
HIGHCVE-2011-2523
vsftpd 2.3.4 downloaded between 20110630 and 20110703 contains a backdoor which opens a shell on port 6200/tcp.... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2011-2515
PackageKit 0.6.17 allows installation of unsigned RPM packages as though they were signed which may allow installation of non-trusted packages and execution of arbitrary code.... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUM- Published: Feb. 12, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2011-2498
The Linux kernel from v2.3.36 before v2.6.39 allows local unprivileged users to cause a denial of service (memory consumption) by triggering creation of PTE pages.... Read more
- Published: Feb. 20, 2020
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2011-2487
The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.... Read more
- Published: Mar. 11, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2011-2480
Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl allows a local unprivileged user to cause the kernel to cop... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-2353
Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDocument function.... Read more
- Published: Nov. 07, 2019
- Modified: Nov. 21, 2024
-
2.4
LOWCVE-2011-2343
The Bluetooth stack in Android before 2.3.6 allows a physically proximate attacker to obtain contact information via an AT phonebook transfer.... Read more
Affected Products : android- Published: Feb. 12, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-2337
A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.... Read more
Affected Products : blink- Published: Nov. 07, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-2336
An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that signal when a hardware animation starts.... Read more
- Published: Nov. 07, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2011-2335
A double-free vulnerability exists in WebKit in Google Chrome before Blink M12 in the WebCore::CSSSelector function.... Read more
- Published: Nov. 12, 2019
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2011-2334
Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements with reflections.... Read more
- Published: Nov. 12, 2019
- Modified: Nov. 21, 2024
-
5.3
MEDIUMCVE-2011-2207
dirmngr before 2.1.0 improperly handles certain system calls, which allows remote attackers to cause a denial of service (DOS) via a specially-crafted certificate.... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2011-2195
A flaw was found in WebSVN 2.3.2. Without prior authentication, if the 'allowDownload' option is enabled in config.php, an attacker can invoke the dl.php script and pass a well formed 'path' argument to execute arbitrary commands against the underlying op... Read more
Affected Products : websvn- Published: Oct. 26, 2021
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2011-2187
xscreensaver before 5.14 crashes during activation and leaves the screen unlocked when in Blank Only Mode and when DPMS is disabled, which allows local attackers to access resources without authentication.... Read more
- Published: Nov. 27, 2019
- Modified: Nov. 21, 2024