2010 CVE Vulnerabilities

5,249 CVEs published in 2010.

CVE IDSeverityCVSSDescription
CVE-2010-0207MEDIUM5.5In xpdf, the xref table contains an infinite loop which allows remote attackers to cause a denial of service (applicatio...
CVE-2010-0206MEDIUM5.5xpdf allows remote attackers to cause a denial of service (NULL pointer dereference and crash) in the way it processes J...
CVE-2010-2064HIGH7.1rpcbind 0.2.0 allows local users to write to arbitrary files or gain privileges via a symlink attack on (1) /tmp/portmap...
CVE-2010-2061HIGH7.8rpcbind 0.2.0 does not properly validate (1) /tmp/portmap.xdr and (2) /tmp/rpcbind.xdr, which can be created by an attac...
CVE-2010-1678HIGH7.5Mapserver 5.2, 5.4 and 5.6 before 5.6.5-2 improperly validates symbol index values during Mapfile parsing.
CVE-2010-4237MEDIUM5.9Mercurial before 1.6.4 fails to verify the Common Name field of SSL certificates which allows remote attackers who acqui...
CVE-2010-3375CRITICAL9.8qtparted has insecure library loading which may allow arbitrary code execution
CVE-2010-3373MEDIUM5.5paxtest handles temporary files insecurely
CVE-2010-4245MEDIUM6.1pootle 2.0.5 has XSS via 'match_names' parameter
CVE-2010-4241HIGH8.8Tiki Wiki CMS Groupware 5.2 has CSRF
CVE-2010-4240MEDIUM6.1Tiki Wiki CMS Groupware 5.2 has XSS
CVE-2010-4239CRITICAL9.8Tiki Wiki CMS Groupware 5.2 has Local File Inclusion
CVE-2010-3293MEDIUM5.5mailscanner can allow local users to prevent virus signatures from being updated
CVE-2010-5340MEDIUM6.1IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/ with the parameter password is non-persistent...
CVE-2010-5339MEDIUM6.1IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][uid] i...
CVE-2010-5338MEDIUM6.1IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][action...
CVE-2010-5337MEDIUM6.1IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][contro...
CVE-2010-5336MEDIUM6.1IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: admin/login.html with the parameter username is persis...
CVE-2010-5335HIGH7.5IceWarp Webclient before 10.2.1 has a directory traversal vulnerability. This can result in loss of confidential data of...
CVE-2010-5334HIGH7.5IceWarp Webclient before 10.2.1 has a directory traversal vulnerability. This can result in loss of confidential data of...
CVE-2010-5333CRITICAL9.8The web server in Integard Pro and Home before 2.0.0.9037 and 2.2.x before 2.2.0.9037 has a buffer overflow via a long p...
CVE-2010-5332MEDIUM5.6In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for...
CVE-2010-5331HIGH7.8In the Linux kernel before 2.6.34, a range check issue in drivers/gpu/drm/radeon/atombios.c could cause an off by one (b...
CVE-2010-5330CRITICAL9.8On certain Ubiquiti devices, Command Injection exists via a GET request to stainfo.cgi (aka Show AP info) because the if...
CVE-2010-5305The potential exists for exposure of the product's password used to restrict unauthorized access to Rockwell PLC5/SLC5/0...

Check if your code is affected by 2010 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now