2010 CVE Vulnerabilities
5,249 CVEs published in 2010.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2010-3674 | MEDIUM | 6.1 | 1.0% | Nov 5, 2019 | TYPO3 before 4.4.1 allows XSS in the frontend search box. |
| CVE-2010-3673 | MEDIUM | 5.3 | 1.2% | Nov 5, 2019 | TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows information disclosure in the mail header of the H... |
| CVE-2010-3672 | MEDIUM | 6.1 | 1.0% | Nov 5, 2019 | TYPO3 before 4.3.4 and 4.4.x before 4.4.1 allows XSS in the textarea view helper in an extbase extension. |
| CVE-2010-3671 | MEDIUM | 6.5 | 1.6% | Nov 5, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 is open to a session fixation attack... |
| CVE-2010-3670 | MEDIUM | 4.8 | 0.5% | Nov 5, 2019 | TYPO3 before 4.3.4 and 4.4.x before 4.4.1 contains insecure randomness during generation of a hash with the "forgot pass... |
| CVE-2010-2222 | HIGH | 7.5 | 1.3% | Nov 5, 2019 | The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a d... |
| CVE-2010-3669 | MEDIUM | 5.4 | 0.7% | Nov 4, 2019 | TYPO3 before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS and Open Redirection in the frontend login box... |
| CVE-2010-3668 | HIGH | 7.5 | 1.3% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Header Injection in the secur... |
| CVE-2010-3667 | MEDIUM | 5.3 | 1.1% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Spam Abuse in the native form... |
| CVE-2010-3666 | MEDIUM | 5.3 | 1.2% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 contains insecure randomness in the ... |
| CVE-2010-3665 | MEDIUM | 5.4 | 0.8% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS on the Extension Manager. |
| CVE-2010-3664 | MEDIUM | 6.5 | 1.2% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Information Disclosure on the... |
| CVE-2010-3663 | HIGH | 8.8 | 2.4% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 contains an insecure default value o... |
| CVE-2010-3662 | HIGH | 8.8 | 1.2% | Nov 4, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows SQL Injection on the backend. |
| CVE-2010-3661 | MEDIUM | 6.1 | 0.9% | Nov 1, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows Open Redirection on the backe... |
| CVE-2010-3660 | MEDIUM | 5.4 | 0.8% | Nov 1, 2019 | TYPO3 before 4.1.14, 4.2.x before 4.2.13, 4.3.x before 4.3.4 and 4.4.x before 4.4.1 allows XSS on the backend. |
| CVE-2010-2783 | CRITICAL | 9.1 | 1.9% | Oct 31, 2019 | IcedTea6 before 1.7.4 allow unsigned apps to read and write arbitrary files, related to Extended JNLP Services. |
| CVE-2010-2548 | CRITICAL | 9.1 | 2.0% | Oct 31, 2019 | IcedTea6 before 1.7.4 does not properly check property access, which allows unsigned apps to read and write arbitrary fi... |
| CVE-2010-2490 | MEDIUM | 6.5 | 1.6% | Oct 31, 2019 | Mumble: murmur-server has DoS due to malformed client query |
| CVE-2010-1673 | MEDIUM | 6.1 | 0.8% | Oct 30, 2019 | A cross-site scripting (XSS) vulnerability in ikiwiki before 3.20101112 allows remote attackers to inject arbitrary web ... |
| CVE-2010-0749 | MEDIUM | 5.3 | 1.6% | Oct 30, 2019 | Transmission before 1.92 allows attackers to prevent download of a file by corrupted data during the endgame. |
| CVE-2010-0748 | CRITICAL | 9.8 | 1.9% | Oct 30, 2019 | Transmission before 1.92 allows an attacker to cause a denial of service (crash) or possibly have other unspecified impa... |
| CVE-2010-0747 | HIGH | 7.8 | 0.4% | Oct 30, 2019 | drbd8 allows local users to bypass intended restrictions for certain actions via netlink packets, similar to CVE-2009-37... |
| CVE-2010-0737 | HIGH | 8 | 0.5% | Oct 30, 2019 | A missing permission check was found in The CLI in JBoss Operations Network before 2.3.1 does not properly check permiss... |
| CVE-2010-0398 | MEDIUM | 6.5 | 1.0% | Oct 30, 2019 | The init script in autokey before 0.61.3-2 allows local attackers to write to arbitrary files via a symlink attack. |
Check if your code is affected by 2010 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now