2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-0104——Unspecified vulnerability in the Broadcom Integrated NIC Management Firmware 1.x before 1.40.0.0 and 8.x before 8.08 on ...
CVE-2010-0985——Directory traversal vulnerability in the Abbreviations Manager (com_abbrev) component 1.1 for Joomla! allows remote atta...
CVE-2010-0984——Acidcat CMS 3.5.3 and earlier stores sensitive information under the web root with insufficient access control, which al...
CVE-2010-0983——PHP remote file inclusion vulnerability in include/mail.inc.php in Rezervi 3.0.2 and earlier, when register_globals is e...
CVE-2010-0982——Directory traversal vulnerability in the CARTwebERP (com_cartweberp) component 1.56.75 for Joomla! allows remote attacke...
CVE-2010-0981——SQL injection vulnerability in the TPJobs (com_tpjobs) component for Joomla! allows remote attackers to execute arbitrar...
CVE-2010-0980——SQL injection vulnerability in player.php in Left 4 Dead (L4D) Stats 1.1 allows remote attackers to execute arbitrary SQ...
CVE-2010-0979——Cross-site scripting (XSS) vulnerability in display.php in Obsession-Design Image-Gallery (ODIG) 1.1 allows remote attac...
CVE-2010-0978——KMSoft Guestbook (aka GBook) 1.0 stores sensitive information under the web root with insufficient access control, which...
CVE-2010-0977——PD PORTAL 4.0 stores sensitive information under the web root with insufficient access control, which allows remote atta...
CVE-2010-0976——Acidcat CMS 3.5.x does not prevent access to install.asp after installation finishes, which might allow remote attackers...
CVE-2010-0793——Buffer overflow in BarnOwl before 1.5.1 allows remote attackers to cause a denial of service (crash) and possibly execut...
CVE-2010-0729——A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local user...
CVE-2010-0727——The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kerne...
CVE-2010-0397——The xmlrpc extension in PHP 5.3.1 does not properly handle a missing methodName element in the first argument to the xml...
CVE-2010-0975——PHP remote file inclusion vulnerability in external.php in PHPCityPortal allows remote attackers to execute arbitrary PH...
CVE-2010-0974——Multiple SQL injection vulnerabilities in PHPCityPortal allow remote attackers to execute arbitrary SQL commands via the...
CVE-2010-0973——SQL injection vulnerability in index.php in phppool media Domain Verkaus and Auktions Portal allows remote attackers to ...
CVE-2010-0972——Directory traversal vulnerability in the GCalendar (com_gcalendar) component 2.1.5 for Joomla! allows remote attackers t...
CVE-2010-0971——Multiple cross-site scripting (XSS) vulnerabilities in ATutor 1.6.4 allow remote authenticated users, with Instructor pr...
CVE-2010-0970——SQL injection vulnerability in phpmylogon.php in PhpMyLogon 2 allows remote attackers to execute arbitrary SQL commands ...
CVE-2010-0969——Unbound before 1.4.3 does not properly align structures on 64-bit platforms, which allows remote attackers to cause a de...
CVE-2010-0968——SQL injection vulnerability in bannershow.php in Geekhelps ADMP 1.01 allows remote attackers to execute arbitrary SQL co...
CVE-2010-0967——Multiple directory traversal vulnerabilities in Geekhelps ADMP 1.01, when magic_quotes_gpc is disabled, allow remote att...
CVE-2010-0966——PHP remote file inclusion vulnerability in inc/config.php in deV!L`z Clanportal (DZCP) 1.5.2, when register_globals is e...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now