2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2010-2473MEDIUM6.5Drupal 6.x before 6.16 and 5.x before version 5.22 does not properly block users under certain circumstances. A user wit...
CVE-2010-2472MEDIUM4.8Locale module and dependent contributed modules in Drupal 6.x before 6.16 and 5.x before version 5.22 do not sanitize th...
CVE-2010-2250MEDIUM6.1Drupal 5.x and 6.x before 6.16 uses a user-supplied value in output during site installation which could allow an attack...
CVE-2010-4178MEDIUM5.5MySQL-GUI-tools (mysql-administrator) leaks passwords into process list after with launch of mysql text console
CVE-2010-2471MEDIUM6.1Drupal versions 5.x and 6.x has open redirection
CVE-2010-3674MEDIUM6.1TYPO3 before 4.4.1 allows XSS in the frontend search box.
CVE-2010-3673MEDIUM5.3TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows information disclosure in the mail header of the H...
CVE-2010-3672MEDIUM6.1TYPO3 before 4.3.4 and 4.4.x before 4.4.1 allows XSS in the textarea view helper in an extbase extension.
CVE-2010-3671MEDIUM6.5TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 is open to a session fixation attack...
CVE-2010-3670MEDIUM4.8TYPO3 before 4.3.4 and 4.4.x before 4.4.1 contains insecure randomness during generation of a hash with the "forgot pass...
CVE-2010-3669MEDIUM5.4TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS and Open Redirection in the frontend login box...
CVE-2010-3667MEDIUM5.3TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Spam Abuse in the native form...
CVE-2010-3666MEDIUM5.3TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 contains insecure randomness in the ...
CVE-2010-3665MEDIUM5.4TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS on the Extension Manager.
CVE-2010-3664MEDIUM6.5TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Information Disclosure on the...
CVE-2010-3661MEDIUM6.1TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Open Redirection on the backe...
CVE-2010-3660MEDIUM5.4TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS on the backend.
CVE-2010-2490MEDIUM6.5Mumble: murmur-server has DoS due to malformed client query
CVE-2010-1673MEDIUM6.1A cross-site scripting (XSS) vulnerability in ikiwiki before 3.20101112 allows remote attackers to inject arbitrary web ...
CVE-2010-0749MEDIUM5.3Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame.
CVE-2010-0398MEDIUM6.5The init script in autokey before 0.61.3-2 allows local attackers to write to arbitrary files via a symlink attack.
CVE-2010-0207MEDIUM5.5In xpdf, the xref table contains an infinite loop which allows remote attackers to cause a denial of service (applicatio...
CVE-2010-0206MEDIUM5.5xpdf allows remote attackers to cause a denial of service (NULL pointer dereference and crash) in the way it processes J...
CVE-2010-4237MEDIUM5.9Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acqui...
CVE-2010-3373MEDIUM5.5paxtest handles temporary files insecurely

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now