2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2010-4663——Unspecified vulnerability in the News module in CMS Made Simple (CMSMS) before 1.9.1 has unknown impact and attack vecto...
CVE-2010-2246——feh before 1.8, when the --wget-timestamp option is enabled, might allow remote attackers to execute arbitrary commands ...
CVE-2010-4807——Race condition in IBM Web Content Manager (WCM) 7.0.0.1 before CF003 allows remote authenticated users to cause a denial...
CVE-2010-4806——The authoring tool in IBM Web Content Manager (WCM) 6.1.5, and 7.0.0.1 before CF003, allows remote authenticated users t...
CVE-2010-3908——FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory...
CVE-2010-0217——Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote ...
CVE-2010-0216——authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartex...
CVE-2010-4284——SQL injection vulnerability in the authentication form in the integrated web server in the Data Management Server (DMS) ...
CVE-2010-4665——Integer overflow in the ReadDirectory function in tiffdump.c in tiffdump in LibTIFF before 3.9.5 allows remote attackers...
CVE-2010-4803——Mojolicious before 0.999927 does not properly implement HMAC-MD5 checksums, which has unspecified impact and remote atta...
CVE-2010-4802——Commands.pm in Mojolicious before 0.999928 does not properly perform CGI environment detection, which has unspecified im...
CVE-2010-4801——Directory traversal vulnerability in admin/updatelist.php in BaconMap 1.0 allows remote attackers to include and execute...
CVE-2010-4800——SQL injection vulnerability in doadd.php in BaconMap 1.0 allows remote attackers to execute arbitrary SQL commands via t...
CVE-2010-4799——Multiple SQL injection vulnerabilities in Chipmunk Pwngame 1.0, when magic_quotes_gpc is disabled, allow remote attacker...
CVE-2010-4798——Directory traversal vulnerability in index.php in OrangeHRM 2.6.0.1 allows remote attackers to include and execute arbit...
CVE-2010-4797——Multiple SQL injection vulnerabilities in the log-in form in Truworth Flex Timesheet allow remote attackers to execute a...
CVE-2010-4796——Multiple SQL injection vulnerabilities in PHPYun 1.1.6 allow remote attackers to execute arbitrary SQL commands via the ...
CVE-2010-4795——SQL injection vulnerability in the JS Calendar (com_jscalendar) component 1.5.1 and 1.5.4 for Joomla! allows remote atta...
CVE-2010-4794——Multiple cross-site scripting (XSS) vulnerabilities in the JoomlaSeller JS Calendar (com_jscalendar) component 1.5.1 and...
CVE-2010-4793——SQL injection vulnerability in detail.asp in Site2Nite Auto e-Manager allows remote attackers to execute arbitrary SQL c...
CVE-2010-4792——Cross-site scripting (XSS) vulnerability in title.php in OPEN IT OverLook 5.0 allows remote attackers to inject arbitrar...
CVE-2010-4791——SQL injection vulnerability in infusions/mg_user_fotoalbum_panel/mg_user_fotoalbum.php in the MG User-Fotoalbum (mg_user...
CVE-2010-4790——Directory traversal vulnerability in FilterFTP 2.0.3, 2.0.5, and probably earlier versions, allows remote FTP servers to...
CVE-2010-3260——oxf/xml/xerces/XercesSAXParserFactoryImpl.java in the xforms-server component in the XForms service in Orbeon Forms befo...
CVE-2010-2789——PHP remote file inclusion vulnerability in MediaWikiParserTest.php in MediaWiki 1.16 beta, when register_globals is enab...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now