2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-4235——Format string vulnerability in RealNetworks Helix Server 12.x, 13.x, and 14.x before 14.2, and Helix Mobile Server 12.x,...
CVE-2010-3693——Cross-site scripting (XSS) vulnerability in Horde Dynamic IMP (DIMP) before 1.1.5, and Horde Groupware Webmail Edition b...
CVE-2010-3447——Cross-site scripting (XSS) vulnerability in view.php in the file viewer in Horde Gollem before 1.1.2 allows remote attac...
CVE-2010-3695——Cross-site scripting (XSS) vulnerability in fetchmailprefs.php in Horde IMP before 4.3.8, and Horde Groupware Webmail Ed...
CVE-2010-1675——bgpd in Quagga before 0.99.18 allows remote attackers to cause a denial of service (session reset) via a malformed AS_PA...
CVE-2010-1674——The extended-community parser in bgpd in Quagga before 0.99.18 allows remote attackers to cause a denial of service (NUL...
CVE-2010-3276——libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a ...
CVE-2010-3275——libdirectx_plugin.dll in VideoLAN VLC Media Player before 1.1.8 allows remote attackers to execute arbitrary code via a ...
CVE-2010-4776——SQL injection vulnerability in takefreestart.php in PreProjects Pre Online Tests Generator Pro allows remote attackers t...
CVE-2010-4775——The Relevant Content module 5.x before 5.x-1.4 and 6.x before 6.x-1.5 for Drupal does not properly implement node access...
CVE-2010-4774——SQL injection vulnerability in pdf.php in AuraCMS 1.62 allows remote attackers to execute arbitrary SQL commands via the...
CVE-2010-4773——Unspecified vulnerability in Hitachi EUR Form Client before 05-10 -/D 2010.11.15 and 05-10-CA (* 2) 2010.11.15; Hitachi ...
CVE-2010-4772——Cross-site scripting (XSS) vulnerability in blocks/lang.php in S-CMS 2.5 allows remote attackers to inject arbitrary web...
CVE-2010-4771——SQL injection vulnerability to viewforum.php in S-CMS 2.5 allows remote attackers to execute arbitrary SQL commands via ...
CVE-2010-4770——SQL injection vulnerability in index.php in CommodityRentals DVD Rentals Script allows remote attackers to execute arbit...
CVE-2010-4769——Directory traversal vulnerability in the Jimtawl (com_jimtawl) component 1.0.2 Joomla! allows remote attackers to read a...
CVE-2010-4228——Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated...
CVE-2010-4768——Open Ticket Request System (OTRS) before 2.3.5 does not properly disable hidden permissions, which allows remote authent...
CVE-2010-4767——Open Ticket Request System (OTRS) before 2.3.6 does not properly handle e-mail messages in which the From line contains ...
CVE-2010-4766——The AgentTicketForward feature in Open Ticket Request System (OTRS) before 2.4.7 does not properly remove inline images ...
CVE-2010-4765——Race condition in the Kernel::System::Main::FileWrite method in Open Ticket Request System (OTRS) before 2.4.8 allows re...
CVE-2010-4764——Open Ticket Request System (OTRS) before 2.4.10, and 3.x before 3.0.3, does not present warnings about incoming encrypte...
CVE-2010-4763——The ACL-customer-status Ticket Type setting in Open Ticket Request System (OTRS) before 3.0.0-beta1 does not restrict th...
CVE-2010-4762——Cross-site scripting (XSS) vulnerability in the rich-text-editor component in Open Ticket Request System (OTRS) before 3...
CVE-2010-4761——The customer-interface ticket-print dialog in Open Ticket Request System (OTRS) before 3.0.0-beta3 does not properly res...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now