2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2010-0982——Directory traversal vulnerability in the CARTwebERP (com_cartweberp) component 1.56.75 for Joomla! allows remote attacke...
CVE-2010-0981——SQL injection vulnerability in the TPJobs (com_tpjobs) component for Joomla! allows remote attackers to execute arbitrar...
CVE-2010-0980——SQL injection vulnerability in player.php in Left 4 Dead (L4D) Stats 1.1 allows remote attackers to execute arbitrary SQ...
CVE-2010-0979——Cross-site scripting (XSS) vulnerability in display.php in Obsession-Design Image-Gallery (ODIG) 1.1 allows remote attac...
CVE-2010-0978——KMSoft Guestbook (aka GBook) 1.0 stores sensitive information under the web root with insufficient access control, which...
CVE-2010-0977——PD PORTAL 4.0 stores sensitive information under the web root with insufficient access control, which allows remote atta...
CVE-2010-0976——Acidcat CMS 3.5.x does not prevent access to install.asp after installation finishes, which might allow remote attackers...
CVE-2010-0793——Buffer overflow in BarnOwl before 1.5.1 allows remote attackers to cause a denial of service (crash) and possibly execut...
CVE-2010-0729——A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local user...
CVE-2010-0727——The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kerne...
CVE-2010-0397——The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xml...
CVE-2010-0975——PHP remote file inclusion vulnerability in external.php in PHPCityPortal allows remote attackers to execute arbitrary PH...
CVE-2010-0974——Multiple SQL injection vulnerabilities in PHPCityPortal allow remote attackers to execute arbitrary SQL commands via the...
CVE-2010-0973——SQL injection vulnerability in index.php in phppool media Domain Verkaus and Auktions Portal allows remote attackers to ...
CVE-2010-0972——Directory traversal vulnerability in the GCalendar (com_gcalendar) component 2.1.5 for Joomla! allows remote attackers t...
CVE-2010-0971——Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.6.4 allow remote authenticated users, with Instructor pr...
CVE-2010-0970——SQL injection vulnerability in phpmylogon.php in PhpMyLogon 2 allows remote attackers to execute arbitrary SQL commands ...
CVE-2010-0969——Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a de...
CVE-2010-0968——SQL injection vulnerability in bannershow.php in Geekhelps ADMP 1.01 allows remote attackers to execute arbitrary SQL co...
CVE-2010-0967——Multiple directory traversal vulnerabilities in Geekhelps ADMP 1.01, when magic_quotes_gpc is disabled, allow remote att...
CVE-2010-0966——PHP remote file inclusion vulnerability in inc/config.php in deV!L`z Clanportal (DZCP) 1.5.2, when register_globals is e...
CVE-2010-0965——Jevci Siparis Formu Scripti stores sensitive information under the web root with insufficient access control, which allo...
CVE-2010-0964——SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands vi...
CVE-2010-0963——Cross-site scripting (XSS) vulnerability in index.php in dl Download Ticket Service before 0.7 allows remote attackers t...
CVE-2010-0054——Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now