2009 CVE Vulnerabilities

5,054 CVEs published in 2009.

Filter:UNKNOWNClear
CVE IDSeverityCVSSDescription
CVE-2009-2578——Google Chrome 2.x through 2.0.172 allows remote attackers to cause a denial of service (application crash) via a long Un...
CVE-2009-2577——Opera 9.52 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption, and application...
CVE-2009-2576——Microsoft Internet Explorer 6.0.2900.2180 and earlier allows remote attackers to cause a denial of service (CPU and memo...
CVE-2009-2575——The Research In Motion (RIM) BlackBerry 8800 allows remote attackers to cause a denial of service (memory consumption an...
CVE-2009-2472——Mozilla Firefox before 3.0.12 does not always use XPCCrossOriginWrapper when required during object construction, which ...
CVE-2009-2471——The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote...
CVE-2009-2469——Mozilla Firefox before 3.0.12 does not properly handle an SVG element that has a property with a watch function and an _...
CVE-2009-2468——Integer overflow in Apple CoreGraphics, as used in Safari before 4.0.3, Mozilla Firefox before 3.0.12, and Mac OS X 10.4...
CVE-2009-2467——Mozilla Firefox before 3.0.12 and 3.5 before 3.5.1 allows remote attackers to cause a denial of service (application cra...
CVE-2009-2466——The JavaScript engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of serv...
CVE-2009-2465——Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and...
CVE-2009-2464——The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and ...
CVE-2009-2463——Multiple integer overflows in the (1) PL_Base64Decode and (2) PL_Base64Encode functions in nsprpub/lib/libc/src/base64.c...
CVE-2009-2462——The browser engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service...
CVE-2009-2574——index.php in MiniTwitter 0.2 beta allows remote authenticated users to modify certain options of arbitrary accounts via ...
CVE-2009-2573——Multiple SQL injection vulnerabilities in MiniTwitter 0.2 beta, when magic_quotes_gpc is disabled, allow remote authenti...
CVE-2009-2572——Cross-site request forgery (CSRF) vulnerability in the Fivestar module 5.x-1.x before 5.x-1.14 and 6.x-1.x before 6.x-1....
CVE-2009-2571——Multiple cross-site scripting (XSS) vulnerabilities in index.php in VerliAdmin 0.3.7 and 0.3.8 allow remote attackers to...
CVE-2009-2570——Stack-based buffer overflow in the Symantec.FaxViewerControl.1 ActiveX control in WinFax\DCCFAXVW.DLL in Symantec WinFax...
CVE-2009-2569——Multiple cross-site scripting (XSS) vulnerabilities in Verlihub Control Panel (VHCP) 1.7e allow remote attackers to inje...
CVE-2009-2568——Stack-based buffer overflow in Sorinara Streaming Audio Player (SAP) 0.9 allows remote attackers to execute arbitrary co...
CVE-2009-2567——SQL injection vulnerability in the Almond Classifieds (com_aclassf) component 5.6.2 for Joomla! allows remote attackers ...
CVE-2009-2566——Stack-based buffer overflow in TFM MMPlayer 2.0, and possibly 2.0.0.30, allows remote attackers to execute arbitrary cod...
CVE-2009-2565——Cross-site scripting (XSS) vulnerability in Perl CGI's By Mrs. Shiromuku shiromuku(fs6)DIARY 2.40 allows remote attacker...
CVE-2009-2564——NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus D...

Check if your code is affected by 2009 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now