5.8
    Medium

    CVE-2010-3879

    Last Modified: 30 Mar 2017

    FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.

    Source:halfdog
    Published:2 Nov 2010
    6.8
    Medium

    CVE-2010-3870

    Last Modified: 13 Oct 2014

    The utf8_decode function in PHP before 5.3.4 does not properly handle non-shortest form UTF-8 encoding and ill-formed subsequences in UTF-8 data, which makes it easier for remote attackers to bypass cross-site scripting (XSS) and SQL injection protection mechanisms via a crafted string.

    Published:27 Sept 2009
    5
    Medium

    CVE-2010-3863

    Last Modified: 13 Oct 2014

    Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, which allows remote attackers to bypass intended access restrictions via a crafted request, as demonstrated by the /./account/index.jsp URI.

    Source:Luke Taylor
    Published:5 Nov 2010
    4.9
    Medium

    CVE-2010-3858

    Last Modified: 26 Nov 2010

    The setup_arg_pages function in fs/exec.c in the Linux kernel before 2.6.36, when CONFIG_STACK_GROWSDOWN is used, does not properly restrict the stack memory consumption of the (1) arguments and (2) environment for a 32-bit application on a 64-bit platform, which allows local users to cause a denial of service (system crash) via a crafted exec system call, a related issue to CVE-2010-2240.

    Source:Roland McGrath
    Published:13 Aug 2010
    7.2
    High

    CVE-2010-3856

    Last Modified: 8 Nov 2016

    ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic shared objects (DSOs) as audit objects, which allows local users to gain privileges by leveraging an unsafe DSO located in a trusted library directory, as demonstrated by libpcprofile.so.

    Source:zx2c4
    Published:22 Oct 2010
    2.1
    Low

    CVE-2010-3850

    Last Modified: 6 Dec 2016

    The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR ioctl call.

    Source:Dan Rosenberg
    Published:30 Dec 2010
    4.7
    Medium

    CVE-2010-3849

    Last Modified: 6 Dec 2016

    The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a NULL value for the remote address field.

    Source:Dan Rosenberg
    Published:30 Dec 2010
    6.9
    Medium

    CVE-2010-3848

    Last Modified: 6 Dec 2016

    Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.

    Source:Jon Oberheide
    Published:30 Dec 2010
    6.9
    Medium

    CVE-2010-3847

    Last Modified: 12 Feb 2018

    elf/dl-load.c in ld.so in the GNU C Library (aka glibc or libc6) through 2.11.2, and 2.12.x through 2.12.1, does not properly handle a value of $ORIGIN for the LD_AUDIT environment variable, which allows local users to gain privileges via a crafted dynamic shared object (DSO) located in an arbitrary directory.

    Source:Metasploit
    Published:18 Oct 2010
    4.3
    Medium

    CVE-2010-3841

    Last Modified: 2 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in lib/TWiki.pm in TWiki before 5.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the rev parameter to the view script or (2) the query string to the login script.

    Source:DOUHINE Davy
    Published:18 Oct 2010
    7.2
    High

    CVE-2010-3830

    Last Modified: 15 Nov 2017

    Networking in Apple iOS before 4.2 accesses an invalid pointer during the processing of packet filter rules, which allows local users to gain privileges via unspecified vectors.

    Source:Apple
    Published:26 Nov 2010
    5
    Medium

    CVE-2010-3804

    Last Modified: 28 Mar 2019

    The JavaScript implementation in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, uses a weak algorithm for generating values of random numbers, which makes it easier for remote attackers to track a user by predicting a value, a related issue to CVE-2008-5913 and CVE-2010-3171.

    Source:Amit Klein
    Published:20 Nov 2010
    4.3
    Medium

    CVE-2010-3770

    Last Modified: 28 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in the rendering engine in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, allow remote attackers to inject arbitrary web script or HTML via (1) x-mac-arabic, (2) x-mac-farsi, or (3) x-mac-hebrew characters that may be converted to angle brackets during rendering.

    Source:Yosuke Hasegawa
    Published:9 Dec 2010
    9.8
    Critical

    CVE-2010-3765

    Last Modified: 28 Oct 2010

    Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, allows remote attackers to execute arbitrary code via vectors related to nsCSSFrameConstructor::ContentAppended, the appendChild method, incorrect index tracking, and the creation of multiple frames, which triggers memory corruption, as exploited in the wild in October 2010 by the Belmoo malware.

    Source:Daniel Veditz
    Published:27 Oct 2010
    9.3
    Critical

    CVE-2010-3749

    Last Modified: 14 Jan 2011

    The browser-plugin implementation in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1 allows remote attackers to arguments to the RecordClip method, which allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via a " (double quote) in an argument to the RecordClip method, aka "parameter injection."

    Source:Sean de Regge
    Published:18 Oct 2010
    9.3
    Critical

    CVE-2010-3747

    Last Modified: 18 Mar 2011

    An ActiveX control in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.4, and RealPlayer Enterprise 2.1.2 does not properly initialize an unspecified object component during parsing of a CDDA URI, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized pointer dereference and application crash) via a long URI.

    Source:Metasploit
    Published:18 Oct 2010
    7.5
    High

    CVE-2010-3742

    Last Modified: 9 Oct 2010

    Multiple PHP remote file inclusion vulnerabilities in themes/default/index.php in Free Simple CMS 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) meta or (2) phpincdir parameter, a different issue than CVE-2010-3307.

    Source:Dr.$audi
    Published:5 Oct 2010
    7.1
    High

    CVE-2010-3714

    Last Modified: 29 Dec 2010

    The jumpUrl (aka access tracking) implementation in tslib/class.tslib_fe.php in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 does not properly compare certain hash values during access-control decisions, which allows remote attackers to read arbitrary files via unspecified vectors.

    Source:ikki
    Published:25 Oct 2010
    4.3
    Medium

    CVE-2010-3709

    Last Modified: 5 Nov 2010

    The ZipArchive::getArchiveComment function in PHP 5.2.x through 5.2.14 and 5.3.x through 5.3.3 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted ZIP archive.

    Source:Maksymilian Arciemowicz
    Published:19 Oct 2010
    4.3
    Medium

    CVE-2010-3695

    Last Modified: 25 Sept 2014

    Cross-site scripting (XSS) vulnerability in fetchmailprefs.php in Horde IMP before 4.3.8, and Horde Groupware Webmail Edition before 1.2.7, allows remote attackers to inject arbitrary web script or HTML via the fm_id parameter in a fetchmail_prefs_save action, related to the Fetchmail configuration.

    Source:Moritz Naumann
    Published:31 Mar 2011
    4
    Medium

    CVE-2010-3683

    Last Modified: 1 Sept 2014

    Oracle MySQL 5.1 before 5.1.49 and 5.5 before 5.5.5 sends an OK packet when a LOAD DATA INFILE request generates SQL errors, which allows remote authenticated users to cause a denial of service (mysqld daemon crash) via a crafted request.

    Source:Elena Stepanova
    Published:9 Jul 2010
    4
    Medium

    CVE-2010-3682

    Last Modified: 1 Sept 2014

    Oracle MySQL 5.1 before 5.1.49 and 5.0 before 5.0.92 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using EXPLAIN with crafted "SELECT ... UNION ... ORDER BY (SELECT ... WHERE ...)" statements, which triggers a NULL pointer dereference in the Item_singlerow_subselect::store function.

    Source:Bjorn Munch
    Published:9 Jul 2010
    4
    Medium

    CVE-2010-3681

    Last Modified: 2 Sept 2014

    Oracle MySQL 5.1 before 5.1.49 and 5.5 before 5.5.5 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by using the HANDLER interface and performing "alternate reads from two indexes on a table," which triggers an assertion failure.

    Source:Matthias Leich
    Published:9 Jul 2010
    4
    Medium

    CVE-2010-3680

    Last Modified: 1 Sept 2014

    Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) by creating temporary tables with nullable columns while using InnoDB, which triggers an assertion failure.

    Source:Boris Reisig
    Published:9 Jul 2010
    4
    Medium

    CVE-2010-3679

    Last Modified: 2 Sept 2014

    Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.

    Source:Shane Bester
    Published:7 Sept 2010
    4
    Medium

    CVE-2010-3678

    Last Modified: 12 Nov 2016

    Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (crash) via (1) IN or (2) CASE operations with NULL arguments that are explicitly specified or indirectly provided by the WITH ROLLUP modifier.

    Source:Shane Bester
    Published:9 Jul 2010
    4
    Medium

    CVE-2010-3676

    Last Modified: 2 Sept 2014

    storage/innobase/dict/dict0crea.c in mysqld in Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (assertion failure) by modifying the (1) innodb_file_format or (2) innodb_file_per_table configuration parameters for the InnoDB storage engine, then executing a DDL statement.

    Source:Elena Stepanova
    Published:9 Jul 2010
    9.3
    Critical

    CVE-2010-3654

    Last Modified: 10 Mar 2011

    Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted SWF content, as exploited in the wild in October 2010.

    Source:Metasploit
    Published:28 Oct 2010
    9.3
    Critical

    CVE-2010-3653

    Last Modified: 21 Oct 2017

    The Director module (dirapi.dll) in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a Director movie with a crafted rcsL chunk containing a field whose value is used as a pointer offset, as exploited in the wild in October 2010. NOTE: some of these details are obtained from third party information.

    Source:Abysssec
    Published:26 Oct 2010
    9.3
    Critical

    CVE-2010-3639

    Last Modified: 18 Dec 2010

    Unspecified vulnerability in Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris, and 10.1.95.1 on Android, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors.

    Source:Matthew Bergin
    Published:4 Nov 2010
    9.3
    Critical

    CVE-2010-3631

    Last Modified: 6 Oct 2010

    Array index error in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows attackers to execute arbitrary code via unspecified vectors.

    Source:Knud & nSense
    Published:6 Oct 2010
    5
    Medium

    CVE-2010-3609

    Last Modified: 5 Aug 2011

    The extension parser in slp_v2message.c in OpenSLP 1.2.1, and other versions before SVN revision 1647, as used in Service Location Protocol daemon (SLPD) in VMware ESX 4.0 and 4.1 and ESXi 4.0 and 4.1, allows remote attackers to cause a denial of service (infinite loop) via a packet with a "next extension offset" that references this extension or a previous extension. NOTE: some of these details are obtained from third party information.

    Source:Nicolas Gregoire
    Published:11 Mar 2011
    7.5
    High

    CVE-2010-3608

    Last Modified: 21 Sept 2010

    Multiple SQL injection vulnerabilities in wpQuiz 2.7 allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) password (pw) parameters to (a) admin.php or (b) user.php.

    Source:KnocKout
    Published:24 Sept 2010
    6.8
    Medium

    CVE-2010-3603

    Last Modified: 16 Sept 2010

    Cross-site request forgery (CSRF) vulnerability in the file manager service (Services/FileService.ashx) in mojoPortal 2.3.4.3 and 2.3.5.1 allows remote attackers to hijack the authentication of administrators for requests that rename arbitrary files, as demonstrated by causing the user.config file to be moved, leading to a denial of service (service stop) and possibly the exposure of sensitive information.

    Source:Abysssec
    Published:24 Sept 2010
    4.3
    Medium

    CVE-2010-3602

    Last Modified: 16 Sept 2010

    Cross-site scripting (XSS) vulnerability in ProfileView.aspx in mojoPortal 2.3.4.3 and 2.3.5.1 allows remote attackers to inject arbitrary web script or HTML via the User ID parameter. NOTE: some of these details are obtained from third party information.

    Source:Abysssec
    Published:24 Sept 2010
    7.5
    High

    CVE-2010-3601

    Last Modified: 2 Oct 2010

    SQL injection vulnerability in index.php in ibPhotohost 1.1.2 allows remote attackers to execute arbitrary SQL commands via the img parameter.

    Source:fred777
    Published:24 Sept 2010
    7.5
    High

    CVE-2010-3600

    Last Modified: 15 Nov 2012

    Unspecified vulnerability in the Client System Analyzer component in Oracle Database Server 11.1.0.7 and 11.2.0.1 and Enterprise Manager Grid Control 10.2.0.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from a reliable third party coordinator that this issue involves an exposed JSP script that accepts XML uploads in conjunction with NULL bytes in an unspecified parameter that allow execution of arbitrary code.

    Source:Metasploit
    Published:19 Jan 2011
    9.4
    Critical

    CVE-2010-3599

    Last Modified: 26 Jan 2011

    Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect integrity and availability via unknown vectors related to Import Server. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can overwrite arbitrary files and execute arbitrary code via a full pathname in the first argument to the WriteJPG method in the NCSECWLib ActiveX control.

    Source:Alexandr Polyakov
    Published:19 Jan 2011
    7.8
    High

    CVE-2010-3595

    Last Modified: 26 Jan 2011

    Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect confidentiality via unknown vectors related to Import Server. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can read arbitrary files via a full pathname in the first argument to the ImportBodyText method in the EasyMail ActiveX control (emsmtp.dll).

    Source:Alexey Sintsov
    Published:19 Jan 2011
    9.3
    Critical

    CVE-2010-3591

    Last Modified: 26 Jan 2011

    Unspecified vulnerability in the Oracle Document Capture component in Oracle Fusion Middleware 10.1.3.4 and 10.1.3.5 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Internal Operations. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from the original researcher that remote attackers can overwrite or delete arbitrary files via a full pathname in the second argument to the DownloadSingleMessageToFile method in the EMPOP3Lib ActiveX component (empop3.dll).

    Source:Evdokimov Dmitriy
    Published:19 Jan 2011
    9
    Critical

    CVE-2010-3585

    Last Modified: 6 Mar 2011

    Unspecified vulnerability in the OracleVM component in Oracle VM 2.2.1 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to ovs-agent. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a third party researcher that this is related to the exposure of unspecified functions using XML-RPC.

    Source:Metasploit
    Published:14 Oct 2010
    3.5
    Low

    CVE-2010-3581

    Last Modified: 1 Oct 2014

    Unspecified vulnerability in the BPEL Console component in Oracle Fusion Middleware 11.1.1.1.0 and 11.1.1.2.0 allows remote authenticated users to affect integrity via unknown vectors.

    Source:Alexander Polyakov
    Published:14 Oct 2010
    5.1
    Medium

    CVE-2010-3573

    Last Modified: 20 Oct 2010

    Unspecified vulnerability in the Networking component in Oracle Java SE and Java for Business 6 Update 21 and 5.0 Update 25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable downstream vendor that this is related to missing validation of request headers in the HttpURLConnection class when they are set by applets, which allows remote attackers to bypass the intended security policy.

    Source:Roberto Suggi Liverani
    Published:12 Oct 2010
    10
    Critical

    CVE-2010-3563

    Last Modified: 10 Mar 2011

    Unspecified vulnerability in the Deployment component in Oracle Java SE and Java for Business 6 Update 21 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the October 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is related to "how Web Start retrieves security policies," BasicServiceImpl, and forged policies that bypass sandbox restrictions.

    Source:Metasploit
    Published:12 Oct 2010
    10
    Critical

    CVE-2010-3552

    Last Modified: 13 Oct 2010

    Unspecified vulnerability in the New Java Plug-in component in Oracle Java SE and Java for Business 6 Update 21 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

    Source:Skylined
    Published:12 Oct 2010
    4.3
    Medium

    CVE-2010-3514

    Last Modified: 20 Oct 2010

    Unspecified vulnerability in the Oracle iPlanet Web Server (Sun Java System Web Server) component in Oracle Sun Products Suite 6.1 and 7.0 allows remote attackers to affect integrity via unknown vectors related to Web Container.

    Source:Roberto Suggi Liverani
    Published:13 Oct 2010
    6.3
    Medium

    CVE-2010-3503

    Last Modified: 22 Nov 2017

    Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect confidentiality and integrity via unknown vectors related to su.

    Source:prdelka
    Published:13 Oct 2010
    6.5
    Medium

    CVE-2010-3490

    Last Modified: 24 Sept 2010

    Directory traversal vulnerability in page.recordings.php in the System Recordings component in the configuration interface in FreePBX 2.8.0 and earlier allows remote authenticated administrators to create arbitrary files via a .. (dot dot) in the usersnum parameter to admin/config.php, as demonstrated by creating a .php file under the web root.

    Source:Trustwave's SpiderLabs
    Published:28 Sept 2010
    4.3
    Medium

    CVE-2010-3489

    Last Modified: 15 Sept 2014

    Cross-site scripting (XSS) vulnerability in netautor/napro4/home/login2.php in CMS Digital Workroom (formerly Netautor Professional) 5.5.0 allows remote attackers to inject arbitrary web script or HTML via the goback parameter.

    Source:Gjoko Krstic
    Published:22 Sept 2010
    5
    Medium

    CVE-2010-3486

    Last Modified: 10 Mar 2011

    Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbitrary files via a (1) ../ (dot dot slash), (2) %5C (encoded backslash), or (3) %255c (double-encoded backslash) in the name parameter.

    Source:Hoyt LLC Research
    Published:22 Sept 2010