2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-2578Google Chrome 2.x through 2.0.172 allows remote attackers to cause a denial of service (application crash) via a long Un...
CVE-2009-2577Opera 9.52 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption, and application...
CVE-2009-2576Microsoft Internet Explorer 6.0.2900.2180 and earlier allows remote attackers to cause a denial of service (CPU and memo...
CVE-2009-2575The Research In Motion (RIM) BlackBerry 8800 allows remote attackers to cause a denial of service (memory consumption an...
CVE-2009-2472Mozilla Firefox before 3.0.12 does not always use XPCCrossOriginWrapper when required during object construction, which ...
CVE-2009-2471The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote...
CVE-2009-2469Mozilla Firefox before 3.0.12 does not properly handle an SVG element that has a property with a watch function and an _...
CVE-2009-2468Integer overflow in Apple CoreGraphics, as used in Safari before 4.0.3, Mozilla Firefox before 3.0.12, and Mac OS X 10.4...
CVE-2009-2467Mozilla Firefox before 3.0.12 and 3.5 before 3.5.1 allows remote attackers to cause a denial of service (application cra...
CVE-2009-2466The JavaScript engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of serv...
CVE-2009-2465Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and...
CVE-2009-2464The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and ...
CVE-2009-2463Multiple integer overflows in the (1) PL_Base64Decode and (2) PL_Base64Encode functions in nsprpub/lib/libc/src/base64.c...
CVE-2009-2462The browser engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service...
CVE-2009-2574index.php in MiniTwitter 0.2 beta allows remote authenticated users to modify certain options of arbitrary accounts via ...
CVE-2009-2573Multiple SQL injection vulnerabilities in MiniTwitter 0.2 beta, when magic_quotes_gpc is disabled, allow remote authenti...
CVE-2009-2572Cross-site request forgery (CSRF) vulnerability in the Fivestar module 5.x-1.x before 5.x-1.14 and 6.x-1.x before 6.x-1....
CVE-2009-2571Multiple cross-site scripting (XSS) vulnerabilities in index.php in VerliAdmin 0.3.7 and 0.3.8 allow remote attackers to...
CVE-2009-2570Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax...
CVE-2009-2569Multiple cross-site scripting (XSS) vulnerabilities in Verlihub Control Panel (VHCP) 1.7e allow remote attackers to inje...
CVE-2009-2568Stack-based buffer overflow in Sorinara Streaming Audio Player (SAP) 0.9 allows remote attackers to execute arbitrary co...
CVE-2009-2567SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers ...
CVE-2009-2566Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary cod...
CVE-2009-2565Cross-site scripting (XSS) vulnerability in Perl CGI's By Mrs. Shiromuku shiromuku(fs6)DIARY 2.40 allows remote attacker...
CVE-2009-2564NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus D...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now