2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-3253——The implementation of notification permissions in Google Chrome before 6.0.472.53 allows attackers to cause a denial of ...
CVE-2010-3252——Use-after-free vulnerability in the Notifications presenter in Google Chrome before 6.0.472.53 allows attackers to cause...
CVE-2010-3251——The WebSockets implementation in Google Chrome before 6.0.472.53 allows remote attackers to cause a denial of service (N...
CVE-2010-3250——Unspecified vulnerability in Google Chrome before 6.0.472.53 allows remote attackers to enumerate the set of installed e...
CVE-2010-3249——Google Chrome before 6.0.472.53 does not properly implement SVG filters, which allows remote attackers to cause a denial...
CVE-2010-3248——Google Chrome before 6.0.472.53 does not properly restrict copying to the clipboard, which has unspecified impact and at...
CVE-2010-3247——Google Chrome before 6.0.472.53 does not properly restrict the characters in URLs, which allows remote attackers to spoo...
CVE-2010-3246——Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elemen...
CVE-2010-3245——The automated-backup functionality in Blackboard Transact Suite (formerly Blackboard Commerce Suite) stores the (1) data...
CVE-2010-3244——BbtsConnection_Edit.exe in Blackboard Transact Suite (formerly Blackboard Commerce Suite) before 3.6.0.2 relies on field...
CVE-2010-3213——Cross-site request forgery (CSRF) vulnerability in Microsoft Outlook Web Access (owa/ev.owa) 2007 through SP2 allows rem...
CVE-2010-2874——Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to execute arbitrary code ...
CVE-2010-2739——Buffer overflow in the CreateDIBPalette function in win32k.sys in Microsoft Windows XP SP3, Server 2003 R2 Enterprise SP...
CVE-2010-2802——Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.2 allows remote authenticated users to inject arbitrary ...
CVE-2010-2521——Multiple buffer overflows in fs/nfsd/nfs4xdr.c in the XDR implementation in the NFS server in the Linux kernel before 2....
CVE-2010-2248——fs/cifs/cifssmb.c in the CIFS implementation in the Linux kernel before 2.6.34-rc4 allows remote attackers to cause a de...
CVE-2010-2954——The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handl...
CVE-2010-2532——lxsession-logout in lxsession in LXDE, as used on SUSE openSUSE 11.3 and other platforms, does not lock the screen when ...
CVE-2010-2240——The do_anonymous_page function in mm/memory.c in the Linux kernel before 2.6.27.52, 2.6.32.x before 2.6.32.19, 2.6.34.x ...
CVE-2010-2226——The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descri...
CVE-2010-1507——WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is em...
CVE-2010-1325——Cross-site request forgery (CSRF) vulnerability in the apache2-slms package in SUSE Lifecycle Management Server (SLMS) 1...
CVE-2010-3212——SQL injection vulnerability in index.php in Seagull 0.6.7 and earlier allows remote attackers to execute arbitrary SQL c...
CVE-2010-3211——Multiple SQL injection vulnerabilities in the JE FAQ Pro (com_jefaqpro) component 1.5.0 for Joomla! allow remote attacke...
CVE-2010-3210——Multiple PHP remote file inclusion vulnerabilities in Multi-lingual E-Commerce System 0.2 allow remote attackers to exec...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now