2010 CVE Vulnerabilities
5,249 CVEs published in 2010.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2010-3843 | HIGH | 7.8 | 0.3% | May 28, 2021 | The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file... |
| CVE-2010-5116 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2010-5115 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2010-5114 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2010-5113 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2010-5112 | — | — | — | Nov 5, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. No... |
| CVE-2010-4658 | MEDIUM | 5.3 | 0.9% | Feb 7, 2020 | statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks. |
| CVE-2010-3917 | MEDIUM | 6.5 | 0.8% | Feb 6, 2020 | Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive infor... |
| CVE-2010-5304 | HIGH | 7.5 | 3.1% | Feb 5, 2020 | A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A ... |
| CVE-2010-4815 | CRITICAL | 9.8 | 2.3% | Feb 5, 2020 | Coppermine gallery before 1.4.26 has an input validation vulnerability that allows for code execution. |
| CVE-2010-4662 | MEDIUM | 6.1 | 0.8% | Feb 5, 2020 | PmWiki before 2.2.21 has XSS. |
| CVE-2010-3295 | — | — | — | Jan 23, 2020 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Fu... |
| CVE-2010-3048 | HIGH | 7.5 | 1.3% | Jan 16, 2020 | Cisco Unified Personal Communicator 7.0 (1.13056) does not free allocated memory for received data and does not perform ... |
| CVE-2010-3282 | LOW | 3.3 | 0.3% | Jan 9, 2020 | 389 Directory Server before 1.2.7.1 (aka Red Hat Directory Server 8.2) and HP-UX Directory Server before B.08.10.03, whe... |
| CVE-2010-3782 | HIGH | 8.8 | 1.1% | Jan 2, 2020 | obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in the REST api implementation. |
| CVE-2010-4659 | MEDIUM | 6.1 | 0.9% | Nov 20, 2019 | Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents. |
| CVE-2010-4660 | CRITICAL | 9.8 | 1.3% | Nov 20, 2019 | Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes.. |
| CVE-2010-5108 | HIGH | 7.5 | 1.3% | Nov 13, 2019 | Trac 0.11.6 does not properly check workflow permissions before modifying a ticket. This can be exploited by an attacker... |
| CVE-2010-4817 | MEDIUM | 5.5 | 0.4% | Nov 13, 2019 | pithos before 0.3.5 allows overwrite of arbitrary files via symlinks. |
| CVE-2010-4664 | HIGH | 8.8 | 1.2% | Nov 13, 2019 | In ConsoleKit before 0.4.2, an intended security policy restriction bypass was found. This flaw allows an authenticated ... |
| CVE-2010-4661 | HIGH | 7.8 | 0.4% | Nov 13, 2019 | udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules. |
| CVE-2010-4657 | HIGH | 7.5 | 1.5% | Nov 13, 2019 | PHP5 before 5.4.4 allows passing invalid utf-8 strings via the xmlTextWriterWriteAttribute, which are then misparsed by ... |
| CVE-2010-4654 | HIGH | 7.8 | 1.2% | Nov 13, 2019 | poppler before 0.16.3 has malformed commands that may cause corruption of the internal stack. |
| CVE-2010-4653 | MEDIUM | 6.5 | 1.8% | Nov 13, 2019 | An integer overflow condition in poppler before 0.16.3 can occur when parsing CharCodes for fonts. |
| CVE-2010-4533 | CRITICAL | 9.8 | 1.0% | Nov 13, 2019 | offlineimap before 6.3.4 added support for SSL server certificate validation but it is still possible to use SSL v2 prot... |
Check if your code is affected by 2010 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now