2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-0965——Jevci Siparis Formu Scripti stores sensitive information under the web root with insufficient access control, which allo...
CVE-2010-0964——SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands vi...
CVE-2010-0963——Cross-site scripting (XSS) vulnerability in index.php in dl Download Ticket Service before 0.7 allows remote attackers t...
CVE-2010-0054——Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0053——Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0052——Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0051——WebKit in Apple Safari before 4.0.5 does not properly validate the cross-origin loading of stylesheets, which allows rem...
CVE-2010-0050HIGH8.8Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0049——Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0624——Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar befor...
CVE-2010-0396——Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify ...
CVE-2010-0124——Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to...
CVE-2010-0123——The database backup implementation in Employee Timeclock Software 0.99 stores sensitive information under the web root w...
CVE-2010-0122——Multiple SQL injection vulnerabilities in Employee Timeclock Software 0.99 allow remote attackers to execute arbitrary S...
CVE-2010-0048HIGH8.8Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0047HIGH8.8Use-after-free vulnerability in WebKit in Apple Safari before 4.0.5 allows remote attackers to execute arbitrary code or...
CVE-2010-0046——The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 4.0.5 allows remote attackers to execut...
CVE-2010-0045——Apple Safari before 4.0.5 on Windows does not properly validate external URL schemes, which allows remote attackers to o...
CVE-2010-0044——PubSub in Apple Safari before 4.0.5 does not properly implement use of the Accept Cookies preference to block cookies, w...
CVE-2010-0043——ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows allows remote attackers to execute arbitrary code ...
CVE-2010-0042——ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated w...
CVE-2010-0041——ImageIO in Apple Safari before 4.0.5 and iTunes before 9.1 on Windows does not ensure that memory access is associated w...
CVE-2010-0040——Integer overflow in ColorSync in Apple Safari before 4.0.5 on Windows, and iTunes before 9.1, allows remote attackers to...
CVE-2010-0962——The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the...
CVE-2010-0961——Buffer overflow in qoslist in bos.net.tcp.server in IBM AIX 6.1 and VIOS 2.1 allows local users to gain privileges via u...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now