2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-2191 | — | — | 4.2% | Aug 6, 2009 | Format string vulnerability in Login Window in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows attackers to execute... |
| CVE-2009-2190 | — | — | 4.3% | Aug 6, 2009 | launchd in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to cause a denial of service (individual service ou... |
| CVE-2009-2188 | — | — | 7.9% | Aug 6, 2009 | Buffer overflow in ImageIO in Apple Mac OS X 10.5 before 10.5.8, and Safari before 4.0.3, allows remote attackers to exe... |
| CVE-2009-1728 | — | — | 5.6% | Aug 6, 2009 | Stack-based buffer overflow in Image RAW in Apple Mac OS X 10.5 before 10.5.8, and 10.4 before Digital Camera RAW Compat... |
| CVE-2009-1727 | — | — | 2.7% | Aug 6, 2009 | Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X 10.5 before 10.5.8 makes it easier for user-assisted r... |
| CVE-2009-1726 | — | — | 8.4% | Aug 6, 2009 | Heap-based buffer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows remote attackers to exec... |
| CVE-2009-2625 | — | — | 30.4% | Aug 6, 2009 | XMLScanner.java in Apache Xerces2 Java, as used in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15 ... |
| CVE-2009-2412 | — | — | 13.8% | Aug 6, 2009 | Multiple integer overflows in the Apache Portable Runtime (APR) library and the Apache Portable Utility library (aka APR... |
| CVE-2009-1723 | — | — | 1.4% | Aug 6, 2009 | CFNetwork in Apple Mac OS X 10.5 before 10.5.8 places an incorrect URL in a certificate warning in certain 302 redirecti... |
| CVE-2009-0151 | — | — | 0.4% | Aug 6, 2009 | The screen saver in Dock in Apple Mac OS X 10.5 before 10.5.8 does not prevent four-finger Multi-Touch gestures, which a... |
| CVE-2009-2688 | — | — | 8.6% | Aug 5, 2009 | Multiple integer overflows in glyphs-eimage.c in XEmacs 21.4.22, when running on Windows, allow remote attackers to caus... |
| CVE-2009-2687 | — | — | 4.4% | Aug 5, 2009 | The exif_read_data function in the Exif module in PHP before 5.2.10 allows remote attackers to cause a denial of service... |
| CVE-2009-2676 | — | — | 3.6% | Aug 5, 2009 | Unspecified vulnerability in JNLPAppletlauncher in Sun Java SE, and SE for Business, in JDK and JRE 6 Update 14 and earl... |
| CVE-2009-2675 | — | — | 4.3% | Aug 5, 2009 | Integer overflow in the unpack200 utility in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and J... |
| CVE-2009-2674 | — | — | 6.4% | Aug 5, 2009 | Integer overflow in javaws.exe in Sun Java Web Start in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Updat... |
| CVE-2009-2673 | — | — | 4.8% | Aug 5, 2009 | The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and ... |
| CVE-2009-2672 | — | — | 4.6% | Aug 5, 2009 | The proxy mechanism implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and ... |
| CVE-2009-2671 | — | — | 4.3% | Aug 5, 2009 | The SOCKS proxy implementation in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE ... |
| CVE-2009-2670 | — | — | 3.3% | Aug 5, 2009 | The audio system in Sun Java Runtime Environment (JRE) in JDK and JRE 6 before Update 15, and JDK and JRE 5.0 before Upd... |
| CVE-2009-2669 | — | — | 0.7% | Aug 5, 2009 | A certain debugging component in IBM AIX 5.3 and 6.1 does not properly handle the (1) _LIB_INIT_DBG and (2) _LIB_INIT_DB... |
| CVE-2009-2668 | — | — | 14.5% | Aug 5, 2009 | Microsoft Internet Explorer 6 through 6.0.2900.2180 and 7 through 7.0.6000.16473 allows remote attackers to cause a deni... |
| CVE-2009-2667 | — | — | 1.4% | Aug 5, 2009 | Unspecified vulnerability in IBM Tivoli Key Lifecycle Manager (TKLM) 1.0 has unknown impact and attack vectors, related ... |
| CVE-2009-2579 | — | — | 0.9% | Aug 5, 2009 | SQL injection vulnerability in reward_points.post.php in the Reward points addon in CS-Cart before 2.0.6 allows remote a... |
| CVE-2009-2665 | — | — | 2.5% | Aug 4, 2009 | The nsDocument::SetScriptGlobalObject function in content/base/src/nsDocument.cpp in Mozilla Firefox 3.5.x before 3.5.2,... |
| CVE-2009-2664 | — | — | 2.8% | Aug 4, 2009 | The js_watch_set function in js/src/jsdbgapi.cpp in the JavaScript engine in Mozilla Firefox before 3.0.12 allows remote... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now