2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-2693——FreeBSD 7.1 through 8.1-PRERELEASE does not copy the read-only flag when creating a duplicate mbuf buffer reference, whi...
CVE-2010-2008——MySQL before 5.1.48 allows remote authenticated users with alter database privileges to cause a denial of service (serve...
CVE-2010-2724——Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and 6.x before 6.x-3.2 for...
CVE-2010-2723——Cross-site scripting (XSS) vulnerability in LISTSERV 15 and 16 allows remote attackers to inject arbitrary web script or...
CVE-2010-2722——Cross-site scripting (XSS) vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to injec...
CVE-2010-2721——SQL injection vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to execute arbitrary ...
CVE-2010-2720——SQL injection vulnerability in list.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to...
CVE-2010-2719——SQL injection vulnerability in show.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to...
CVE-2010-2718——Multiple cross-site scripting (XSS) vulnerabilities in CruxSoftware CruxPA 2.00, and possibly earlier, allow remote atta...
CVE-2010-2717——Cross-site scripting (XSS) vulnerability in manager/login.php in CruxSoftware CruxCMS 3.0, and possibly earlier, allows ...
CVE-2010-2716——Multiple SQL injection vulnerabilities in PsNews 1.3 allow remote attackers to execute arbitrary SQL commands via the id...
CVE-2010-2715——Cross-site scripting (XSS) vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to inject arbi...
CVE-2010-2714——SQL injection vulnerability in photos/index.php in TCW PHP Album 1.0 allows remote attackers to execute arbitrary SQL co...
CVE-2010-2523——Multiple buffer overflows in ha.c in the mipv6 daemon in UMIP 0.4 allow remote attackers to have an unspecified impact v...
CVE-2010-2522——The mipv6 daemon in UMIP 0.4 does not verify that netlink messages originated in the kernel, which allows local users to...
CVE-2010-2227——Apache Tomcat 5.5.0 through 5.5.29, 6.0.0 through 6.0.27, and 7.0.0 beta does not properly handle an invalid Transfer-En...
CVE-2010-2702——Buffer overflow in the UGameEngine::UpdateConnectingMessage function in the Unreal engine 1, 2, and 2.5, as used in mult...
CVE-2010-2701——Multiple buffer overflows in the FathFTP ActiveX control 1.7 allow remote attackers to execute arbitrary code via (1) th...
CVE-2010-2700——Cross-site scripting (XSS) vulnerability in index.php in Edge PHP Clickbank Affiliate Marketplace Script (CBQuick) allow...
CVE-2010-2699——SQL injection vulnerability in index.php in Edge PHP Clickbank Affiliate Marketplace Script (CBQuick) allows remote atta...
CVE-2010-2698——Multiple cross-site scripting (XSS) vulnerabilities in Sijio Community Software allow remote authenticated users to inje...
CVE-2010-2697——Cross-site scripting (XSS) vulnerability in Sijio Community Software allows remote authenticated users to inject arbitra...
CVE-2010-2696——SQL injection vulnerability in gallery/index.php in Sijio Community Software allows remote attackers to execute arbitrar...
CVE-2010-2695——Directory traversal vulnerability in the SFTP/SSH2 virtual server in Xlight FTP Server 3.5.0, 3.5.5, and possibly other ...
CVE-2010-2694——SQL injection vulnerability in the redSHOP Component (com_redshop) 1.0 for Joomla! allows remote attackers to execute ar...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now