2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-1209——Use-after-free vulnerability in the NodeIterator implementation in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before ...
CVE-2010-1208HIGH8.8Use-after-free vulnerability in the attribute-cloning functionality in the DOM implementation in Mozilla Firefox 3.5.x b...
CVE-2010-1207——Mozilla Firefox before 3.6.7 and Thunderbird before 3.1.1 do not properly implement read restrictions for CANVAS element...
CVE-2010-2913——The Citibank Citi Mobile app before 2.0.3 for iOS stores account data in a file, which allows local users to obtain sens...
CVE-2010-2755——layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not properly free memory in the parameter array of a plug...
CVE-2010-2754——dom/base/nsJSEnvironment.cpp in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0...
CVE-2010-2528——The clientautoresp function in family_icbm.c in the oscar protocol plugin in libpurple in Pidgin before 2.7.2 allows rem...
CVE-2010-1777——Buffer overflow in Apple iTunes before 9.2.1 allows remote attackers to execute arbitrary code or cause a denial of serv...
CVE-2010-2912——SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com...
CVE-2010-2911——SQL injection vulnerability in index.php in Kayako eSupport 3.70.02 allows remote attackers to execute arbitrary SQL com...
CVE-2010-2910——SQL injection vulnerability in the Ozio Gallery (com_oziogallery) component for Joomla! allows remote attackers to execu...
CVE-2010-2909——SQL injection vulnerability in ttvideo.php in the TTVideo (com_ttvideo) component 1.0 for Joomla! allows remote attacker...
CVE-2010-2908——SQL injection vulnerability in the Joomdle (com_joomdle) component 0.24 and earlier for Joomla! allows remote attackers ...
CVE-2010-2907——SQL injection vulnerability in the Huru Helpdesk (com_huruhelpdesk) component for Joomla! allows remote attackers to exe...
CVE-2010-2906——SQL injection vulnerability in articlesdetails.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remot...
CVE-2010-2905——SQL injection vulnerability in info.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remote attackers...
CVE-2010-2904——Multiple cross-site scripting (XSS) vulnerabilities in the System Landscape Directory (SLD) component 6.4 through 7.02 i...
CVE-2010-2903——Google Chrome before 5.0.375.125 performs unexpected truncation and improper eliding of hostnames, which has unspecified...
CVE-2010-2902——The SVG implementation in Google Chrome before 5.0.375.125 allows remote attackers to cause a denial of service (memory ...
CVE-2010-2901——The rendering implementation in Google Chrome before 5.0.375.125 allows remote attackers to cause a denial of service (m...
CVE-2010-2900——Google Chrome before 5.0.375.125 does not properly handle a large canvas, which has unspecified impact and remote attack...
CVE-2010-2899——Unspecified vulnerability in the layout implementation in Google Chrome before 5.0.375.125 allows remote attackers to ob...
CVE-2010-2898——Google Chrome before 5.0.375.125 does not properly mitigate an unspecified flaw in the GNU C Library, which has unknown ...
CVE-2010-2897——Google Chrome before 5.0.375.125 does not properly mitigate an unspecified flaw in the Windows kernel, which has unknown...
CVE-2010-2896——IBM FileNet Content Manager (CM) 4.0.0, 4.0.1, 4.5.0, and 4.5.1 before FP4 does not properly manage the InheritParentPer...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now