2009 CVE Vulnerabilities
5,054 CVEs published in 2009.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2009-5075 | — | — | 1.0% | May 20, 2011 | Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE ... |
| CVE-2009-5022 | — | — | 10.8% | May 3, 2011 | Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execut... |
| CVE-2009-5074 | — | — | 1.3% | May 3, 2011 | Unspecified vulnerability in the MojoX::Dispatcher::Static implementation in Mojolicious before 0.991250 has unknown imp... |
| CVE-2009-5073 | — | — | 0.9% | Apr 21, 2011 | IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.59 (aka 6.0.0.8-TIV-ITDS-IF0001) allows remote authenticated users to... |
| CVE-2009-5072 | — | — | 0.9% | Apr 21, 2011 | Memory leak in the ldap_explode_dn function in IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.61 (aka 6.0.0.8-TIV-IT... |
| CVE-2009-5071 | — | — | 2.4% | Apr 19, 2011 | Unspecified vulnerability in Palm Pre WebOS before 1.2.1 has unknown impact and attack vectors related to an "included c... |
| CVE-2009-0788 | — | — | 1.7% | Apr 18, 2011 | Red Hat Network (RHN) Satellite Server 5.3 and 5.4 does not properly rewrite unspecified URLs, which allows remote attac... |
| CVE-2009-5065 | — | — | 4.5% | Apr 11, 2011 | Cross-site scripting (XSS) vulnerability in feedparser.py in Universal Feed Parser (aka feedparser or python-feedparser)... |
| CVE-2009-5064 | — | — | 0.5% | Mar 30, 2011 | ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse ... |
| CVE-2009-5062 | — | — | 0.8% | Mar 22, 2011 | IBM Lotus Quickr 8.1 before 8.1.0.15 services for Lotus Domino on AIX allows remote authenticated users to cause a denia... |
| CVE-2009-5061 | — | — | 0.8% | Mar 22, 2011 | Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.14 services for Lotus Domino, when Domino Native Authenti... |
| CVE-2009-5060 | — | — | 0.8% | Mar 22, 2011 | Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.11 services for Lotus Domino might allow remote authentic... |
| CVE-2009-5059 | — | — | 0.8% | Mar 22, 2011 | Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.10 services for Lotus Domino might allow remote authentic... |
| CVE-2009-5058 | — | — | 0.8% | Mar 22, 2011 | Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.5 services for Lotus Domino allows remote authenticated u... |
| CVE-2009-5057 | — | — | 1.7% | Mar 18, 2011 | The S/MIME feature in Open Ticket Request System (OTRS) before 2.3.4 does not configure the RANDFILE and HOME environmen... |
| CVE-2009-5056 | — | — | 0.9% | Mar 18, 2011 | Open Ticket Request System (OTRS) before 2.4.0-beta2 does not properly enforce the move_into permission setting for a qu... |
| CVE-2009-5055 | — | — | 0.9% | Mar 18, 2011 | Open Ticket Request System (OTRS) before 2.4.4 grants ticket access on the basis of single-digit substrings of the Custo... |
| CVE-2009-3028 | — | — | 42.6% | Mar 7, 2011 | The Altiris eXpress NS SC Download ActiveX control in AeXNSPkgDLLib.dll, as used in Symantec Altiris Deployment Solution... |
| CVE-2009-5054 | — | — | 1.6% | Feb 3, 2011 | Smarty before 3.0.0 beta 4 does not consider the umask value when setting the permissions of files, which might allow at... |
| CVE-2009-5053 | — | — | 2.1% | Feb 3, 2011 | Unspecified vulnerability in Smarty before 3.0.0 beta 6 allows remote attackers to execute arbitrary PHP code by injecti... |
| CVE-2009-5052 | — | — | 1.9% | Feb 3, 2011 | Multiple unspecified vulnerabilities in Smarty before 3.0.0 beta 6 have unknown impact and attack vectors. |
| CVE-2009-0190 | — | — | — | Feb 1, 2011 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-1016. Reason: This candidate is a reservation ... |
| CVE-2009-0189 | — | — | — | Feb 1, 2011 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2009-1012. Reason: This candidate is a reservation ... |
| CVE-2009-5051 | — | — | 1.1% | Jan 18, 2011 | Hastymail2 before RC 8 does not set the secure flag for the session cookie in an https session, which makes it easier fo... |
| CVE-2009-5018 | — | — | 10.9% | Jan 14, 2011 | Stack-based buffer overflow in gif2png.c in gif2png 2.5.3 and earlier might allow context-dependent attackers to execute... |
Check if your code is affected by 2009 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now