CVE-2009-3619
UnknownEPSS 1.77%
Last modified
CVE-2009-3619 is a vulnerability of currently unknown severity. Unspecified vulnerability in ViewVC 1.0 before 1.0.9 and 1.1 before 1.1.2 has unknown impact and remote attack vectors related to "printing illegal parameter names and values.". EPSS estimates a 1.77% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in ViewVC 1.0 before 1.0.9 and 1.1 before 1.1.2 has unknown impact and remote attack vectors related to "printing illegal parameter names and values."
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Viewvc | Viewvc | 1.0.1 |
| Viewvc | Viewvc | 1.0.2 |
| Viewvc | Viewvc | 1.0.3 |
| Viewvc | Viewvc | 1.0.4 |
| Viewvc | Viewvc | 1.0.5 |
| Viewvc | Viewvc | 1.0.6 |
| Viewvc | Viewvc | 1.0.7 |
| Viewvc | Viewvc | 1.0.8 |
| Viewvc | Viewvc | 1.1.0 |
| Viewvc | Viewvc | 1.1.1 |
References
- http://secunia.com/advisories/36292Vendor Advisory
- http://secunia.com/advisories/36311Vendor Advisory
- http://www.vupen.com/english/advisories/2009/2257Patch, Vendor Advisory
- http://secunia.com/advisories/36292Vendor Advisory
- http://secunia.com/advisories/36311Vendor Advisory
- http://www.vupen.com/english/advisories/2009/2257Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-3619?
Unspecified vulnerability in ViewVC 1.0 before 1.0.9 and 1.1 before 1.1.2 has unknown impact and remote attack vectors related to "printing illegal parameter names and values."
How severe is CVE-2009-3619?
Severity scoring for CVE-2009-3619 is pending analysis. The EPSS model estimates a 1.77% probability of exploitation in the next 30 days.
How do I fix CVE-2009-3619?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2009
- CVE-2009-3613The swiotlb functionality in the r8169 driver in drivers/net…
- CVE-2009-3614liboping 1.3.2 allows users reading arbitrary files upon the…3.3
- CVE-2009-3615The OSCAR protocol plugin in libpurple in Pidgin before 2.6.…
- CVE-2009-3616Multiple use-after-free vulnerabilities in vnc.c in the VNC …9.9
- CVE-2009-3617Format string vulnerability in the AbstractCommand::onAbort …
- CVE-2009-3618Cross-site scripting (XSS) vulnerability in viewvc.py in Vie…
- CVE-2009-3620The ATI Rage 128 (aka r128) driver in the Linux kernel befor…7.8
- CVE-2009-3621net/unix/af_unix.c in the Linux kernel 2.6.31.4 and earlier …5.5
- CVE-2009-3622Algorithmic complexity vulnerability in wp-trackback.php in …
- CVE-2009-3623The lookup_cb_cred function in fs/nfsd/nfs4callback.c in the…
- CVE-2009-3624The get_instantiation_keyring function in security/keys/keyc…
- CVE-2009-3625Directory traversal vulnerability in www/index.php in Sahana…
Are you affected by CVE-2009-3619?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
