2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2010-3977——Multiple cross-site scripting (XSS) vulnerabilities in wp-content/plugins/cforms/lib_ajax.php in cforms WordPress plugin...
CVE-2010-3914——Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3...
CVE-2010-2583——Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller)...
CVE-2010-4142——Multiple stack-based buffer overflows in DATAC RealWin 2.0 Build 6.1.8.10 and earlier allow remote attackers to cause a ...
CVE-2010-4106——Cross-site request forgery (CSRF) vulnerability in HP Insight Control for Linux before 6.2 allows remote attackers to hi...
CVE-2010-4105——Unspecified vulnerability in HP Insight Orchestration before 6.2 allows remote attackers to bypass intended access restr...
CVE-2010-4104——Unspecified vulnerability in HP Insight Orchestration before 6.2 allows remote attackers to read arbitrary files via unk...
CVE-2010-4103——Unspecified vulnerability in HP Insight Managed System Setup Wizard before 6.2 allows remote attackers to read arbitrary...
CVE-2010-4102——Unspecified vulnerability in HP Insight Recovery before 6.2 allows remote attackers to read arbitrary files via unknown ...
CVE-2010-4101——Cross-site scripting (XSS) vulnerability in HP Insight Recovery before 6.2 allows remote attackers to inject arbitrary w...
CVE-2010-4100——Unspecified vulnerability in HP Insight Control Performance Management before 6.1 update 2 allows remote attackers to re...
CVE-2010-4032——Cross-site request forgery (CSRF) vulnerability in HP Insight Control Performance Management before 6.2 allows remote at...
CVE-2010-4031——Unspecified vulnerability in HP Insight Control Performance Management before 6.2 allows remote authenticated users to g...
CVE-2010-4030——Cross-site scripting (XSS) vulnerability in HP Insight Control Performance Management before 6.2 allows remote attackers...
CVE-2010-4149——Directory traversal vulnerability in FreshWebMaster Fresh FTP 5.36, 5.37, and possibly earlier, allows remote FTP server...
CVE-2010-4148——Directory traversal vulnerability in AnyConnect 1.2.3.0, and possibly earlier, allows remote FTP servers to write arbitr...
CVE-2010-4147——Multiple SQL injection vulnerabilities in Pentasoft Avactis Shopping Cart 1.9.1 build 8356 free edition and earlier allo...
CVE-2010-4146——Cross-site scripting (XSS) vulnerability in Attachmate Reflection for the Web 2008 R2 (builds 10.1.569 and earlier), 200...
CVE-2010-4145——Kisisel Radyo Script stores sensitive information under the web root with insufficient access control, which allows remo...
CVE-2010-4144——SQL injection vulnerability in radyo.asp in Kisisel Radyo Script allows remote attackers to execute arbitrary SQL comman...
CVE-2010-4143——SQL injection vulnerability in chart.php in phpCheckZ 1.1.0, when magic_quotes_gpc is disabled, allows remote attackers ...
CVE-2010-4090——Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2010-4089——IML32.dll in Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code or cause a denial of se...
CVE-2010-4088——dirapi.dll in Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code or cause a denial of s...
CVE-2010-4087——IML32.dll in Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code or cause a denial of se...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now