4nuxd
_
Experience
Certifications
About
Writeups
News
Tools
Resources
Database
[Connect]
Vulnerability_Archives
CVE_
ARCHIVES
.DB
ARCHIVE_CHRONOLOGY.INDEX
STATUS: ONLINE
YEAR:
[2010]
Risk_Filter:
CRITICAL
HIGH
MEDIUM
LOW
Records:
4,667
Mode:
SECURE_QUERY
CVE-2010-4642
MEDIUM
Cross-site scripting (XSS) vulnerability in XWiki Enterprise before 2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified
Discovered
Dec 30, 2010
CVE-2010-4641
HIGH
SQL injection vulnerability in XWiki Enterprise before 2.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Discovered
Dec 30, 2010
CVE-2010-4640
MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in XWiki Watch 1.0 allow remote attackers to inject arbitrary web script or HTML via the rev param
Discovered
Dec 30, 2010
CVE-2010-4639
HIGH
SQL injection vulnerability in index.php in MySource Matrix allows remote attackers to execute arbitrary SQL commands via the id parameter.
Discovered
Dec 30, 2010
CVE-2010-4638
MEDIUM
SQL injection vulnerability in the submitSurvey function in controller.php in JQuarks4s (com_jquarks4s) component 1.0.0 for Joomla!, when magic_quotes
Discovered
Dec 30, 2010
CVE-2010-4637
MEDIUM
Cross-site scripting (XSS) vulnerability in feedlist/handler_image.php in the FeedList plugin 2.61.01 for WordPress allows remote attackers to inject
Discovered
Dec 30, 2010
CVE-2010-4636
HIGH
SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parame
Discovered
Dec 30, 2010
CVE-2010-4635
HIGH
SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via t
Discovered
Dec 30, 2010
CVE-2010-4634
MEDIUM
Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to module.p
Discovered
Dec 30, 2010
CVE-2010-4633
HIGH
SQL injection vulnerability in cart.php in digiSHOP 2.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different
Discovered
Dec 30, 2010
CVE-2010-4632
HIGH
Multiple SQL injection vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to execute arbitrary SQL commands via the (1) article paramete
Discovered
Dec 30, 2010
CVE-2010-4631
MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to inject arbitrary web script or HTML via the (1
Discovered
Dec 30, 2010
CVE-2010-4630
MEDIUM
Cross-site scripting (XSS) vulnerability in pages/admin/surveys/create.php in the WP Survey And Quiz Tool plugin 1.2.1 for WordPress allows remote att
Discovered
Dec 30, 2010
CVE-2010-4629
MEDIUM
MyBB (aka MyBulletinBoard) before 1.4.12 does not properly restrict uid values for group join requests, which allows remote attackers to cause a denia
Discovered
Dec 30, 2010
CVE-2010-4628
MEDIUM
member.php in MyBB (aka MyBulletinBoard) before 1.4.12 makes a certain superfluous call to the SQL COUNT function, which allows remote attackers to ca
Discovered
Dec 30, 2010
CVE-2010-4627
MEDIUM
Cross-site request forgery (CSRF) vulnerability in usercp2.php in MyBB (aka MyBulletinBoard) before 1.4.12 allows remote attackers to hijack the authe
Discovered
Dec 30, 2010
CVE-2010-4626
MEDIUM
The my_rand function in functions.php in MyBB (aka MyBulletinBoard) before 1.4.12 does not properly use the PHP mt_rand function, which makes it easie
Discovered
Dec 30, 2010
CVE-2010-4625
MEDIUM
MyBB (aka MyBulletinBoard) before 1.4.12 does not properly handle a configuration with a visible forum that contains hidden threads, which allows remo
Discovered
Dec 30, 2010
CVE-2010-4624
LOW
MyBB (aka MyBulletinBoard) before 1.4.12 allows remote authenticated users to bypass intended restrictions on the number of [img] MyCodes by editing a
Discovered
Dec 30, 2010
CVE-2010-4522
MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) 1.4.14, and 1.6.x before 1.6.1, allow remote attackers to inject arb
Discovered
Dec 30, 2010
1
2
3
...
Jump_To_Sector:
GO
2026
2025
2024
2023
2022
2021
2020
2019
2018
2017
2016
2015
2014
2013
2012
2011
2010
2009
2008
2007
2006
2005
2004
2003
2002
2001
2000
1999
1998
1997
1996
1995
1994
1993
1992
1991
1990
1989
1988
2026 CVE Archives
2025 CVE Archives
2024 CVE Archives
2023 CVE Archives
2022 CVE Archives
2021 CVE Archives
2020 CVE Archives
2019 CVE Archives
2018 CVE Archives
2017 CVE Archives
2016 CVE Archives
2015 CVE Archives
2014 CVE Archives
2013 CVE Archives
2012 CVE Archives
2011 CVE Archives
2010 CVE Archives
2009 CVE Archives
2008 CVE Archives
2007 CVE Archives
2006 CVE Archives
2005 CVE Archives
2004 CVE Archives
2003 CVE Archives
2002 CVE Archives
2001 CVE Archives
2000 CVE Archives
1999 CVE Archives
1998 CVE Archives
1997 CVE Archives
1996 CVE Archives
1995 CVE Archives
1994 CVE Archives
1993 CVE Archives
1992 CVE Archives
1991 CVE Archives
1990 CVE Archives
1989 CVE Archives
1988 CVE Archives
CVE Database - Vulnerability Explorer